CVE-2012-2173
20.06.2012, 10:27
The ODBC driver in IBM Security AppScan Source 7.x and 8.x before 8.6 sends an SHA-1 hash of the connection password during connections to a solidDB database, which allows remote attackers to obtain sensitive information by sniffing the network.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | security_appscan_source | 7.0 |
ibm | security_appscan_source | 8.0 |
ibm | security_appscan_source | 8.0.0.1 |
ibm | security_appscan_source | 8.0.0.2 |
ibm | security_appscan_source | 8.5 |
ibm | security_appscan_source | 8.5.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration