CVE-2023-50305: IBM Engineering Requirements Management information disclosure
IBM Engineering Requirements Management DOORS 9.7.2.7 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 273336.
Other sources
IBM Engineering Requirements Management DOORS Family does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-50305?
CVE-2023-50305 is classified as a security vulnerability that increases the risk of account compromise due to weak password policies.
How do I fix CVE-2023-50305?
To mitigate CVE-2023-50305, ensure that strong password policies are enforced for all user accounts in IBM Engineering Requirements Management DOORS 9.7.2.7.
What versions are affected by CVE-2023-50305?
CVE-2023-50305 affects IBM Engineering Requirements Management DOORS and DOORS Web Access, specifically versions up to and including 9.7.2.7.
What type of vulnerability is CVE-2023-50305?
CVE-2023-50305 is a vulnerability related to insufficient password strength requirements, making user accounts more susceptible to unauthorized access.
Who is impacted by CVE-2023-50305?
Users and organizations using IBM Engineering Requirements Management DOORS version 9.7.2.7 face potential security risks due to CVE-2023-50305.