Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Security Information Queue
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-4162 1 Ibm 1 Security Information Queue 2020-08-24 5.0 MEDIUM 7.5 HIGH
IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 is missing the HTTP Strict Transport Security header. Users can navigate by mistake to the unencrypted version of the web application or accept invalid certificates. This leads to sensitive data being sent unencrypted over the wire. IBM X-Force ID: 158661.
CVE-2020-4283 1 Ibm 1 Security Information Queue 2020-03-03 5.0 MEDIUM 8.6 HIGH
IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, and 1.0.4 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 176206.