IBM Engineering Systems Design Rhapsody 9.0.2, 10.0, and 10.0.1 transmits sensitive information without encryption that could allow an attacker to obtain highly sensitive information.
Solution:
The product does not encrypt sensitive or critical information before storage or transmission.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/7240374 | patch vendor advisory |