IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 mishandles password creation, which makes it easier for remote attackers to obtain access by leveraging an attack against the password algorithm.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21985736 | vendor advisory |
http://www.securitytracker.com/id/1036255 | vdb entry |