Vulnerabilities > IBM > Netezza Performance Portal > 2.0.0.1

DATE CVE VULNERABILITY TITLE RISK
2014-03-26 CVE-2014-0848 Cryptographic Issues vulnerability in IBM Netezza Performance Portal
The (1) ssl.conf and (2) httpd.conf files in the Apache HTTP Server component in IBM Netezza Performance Portal 2.0 before 2.0.0.4 have weak SSLCipherSuite values, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a brute-force attack.
network
ibm CWE-310
3.5
2014-02-26 CVE-2013-6731 Permissions, Privileges, and Access Controls vulnerability in IBM Netezza Performance Portal 2.0/2.0.0.1/2.0.0.2
IBM Netezza Performance Portal 2.x before 2.0.0.3 allows remote authenticated users to change arbitrary passwords via an HTTP POST request.
network
low complexity
ibm CWE-264
4.0