Vulnerabilities > IBM > Security Guardium > 10.6

DATE CVE VULNERABILITY TITLE RISK
2020-06-23 CVE-2020-4188 Use of Insufficiently Random Values vulnerability in IBM Security Guardium 10.6/11.1
IBM Security Guardium 10.6 and 11.1 may use insufficiently random numbers or values in a security context that depends on unpredictable numbers.
network
low complexity
ibm CWE-330
5.3
2020-06-03 CVE-2020-4190 Use of Hard-coded Credentials vulnerability in IBM Security Guardium 10.6/11.0/11.1
IBM Security Guardium 10.6, 11.0, and 11.1 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
local
low complexity
ibm CWE-798
6.7
2019-10-03 CVE-2019-4422 Unspecified vulnerability in IBM Security Guardium
IBM Security Guardium 9.0, 9.5, and 10.6 are vulnerable to a privilege escalation which could allow an authenticated user to change the accessmgr password.
network
low complexity
ibm
8.8