CVE-2023-33836: Critical severity ibm security verify governance - identity manager vulnerability
IBM Security Verify Governance 10.0 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 256016.
Other sources
IBM Security Verify Governance contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this IBM Security Verify Governance vulnerability?
The vulnerability ID for this IBM Security Verify Governance vulnerability is CVE-2023-33836.
What is the severity of CVE-2023-33836?
The severity of CVE-2023-33836 is medium (5.3).
What is the affected software for CVE-2023-33836?
The affected software for CVE-2023-33836 is IBM Security Verify Governance version up to and including 10.0.
What is the CWE (Common Weakness Enumeration) for CVE-2023-33836?
The CWE for CVE-2023-33836 is CWE-798.
Is there any additional reference for CVE-2023-33836?
Yes, you can find additional reference for CVE-2023-33836 at the following URL: [https://exchange.xforce.ibmcloud.com/vulnerabilities/256016](https://exchange.xforce.ibmcloud.com/vulnerabilities/256016)