IBM QRadar 7.2 uses outdated hashing algorithms to hash certain passwords, which could allow a local user to obtain and decrypt user credentials. IBM Reference #: 1997341.
The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.
Link | Tags |
---|---|
http://www.ibm.com/support/docview.wss?uid=swg21997341 | patch vendor advisory |
http://www.securityfocus.com/bid/96502 | vdb entry |