Back

MEDIUM

IBM Security Directory Server information disclosure

Published Oct 14, 2023

Description

IBM Security Directory Server 6.4.0 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. X-Force ID: 228569.

Affected products

Remediation

No remediation recorded yet.

References (4)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner ibm
Published Oct 14, 2023
Updated Sep 16, 2024
Reserved Jun 13, 2022
CISA Vulnrichment
Updated Sep 16, 2024
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner ibm
Published Oct 14, 2023
Updated Sep 16, 2024
Exploited since n/a
EUVD-2022-36206