IBM Tivoli Key Lifecycle Manager does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://www.ibm.com/support/docview.wss?uid=swg21997956 | patch vendor advisory |
http://www.securityfocus.com/bid/95985 | third party advisory vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/118172 | vdb entry vendor advisory |