Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wwwx-fgw9-364c

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM Curam Social Program Management 7.0.9 and 7.0.10 uses MD5 algorithm for hashing token in a single instance which less safe than default SHA-256 cryptographic algorithm used throughout the Cúram application. IBM X-Force ID: 189156.

IBM Curam Social Program Management 7.0.9 and 7.0.10 uses MD5 algorithm for hashing token in a single instance which less safe than default SHA-256 cryptographic algorithm used throughout the Cúram application. IBM X-Force ID: 189156.

EPSS

Процентиль: 27%
0.00096
Низкий

Дефекты

CWE-326

Связанные уязвимости

CVSS3: 7.5
nvd
больше 5 лет назад

IBM Curam Social Program Management 7.0.9 and 7.0.10 uses MD5 algorithm for hashing token in a single instance which less safe than default SHA-256 cryptographic algorithm used throughout the Cúram application. IBM X-Force ID: 189156.

EPSS

Процентиль: 27%
0.00096
Низкий

Дефекты

CWE-326