Vulnerabilities > IBM > Security Verify Governance > 10.0.2

DATE CVE VULNERABILITY TITLE RISK
2025-01-29 CVE-2023-33838 Use of a One-Way Hash without a Salt vulnerability in IBM Security Verify Governance 10.0.2
IBM Security Verify Governance 10.0.2 Identity Manager uses a one-way cryptographic hash against an input that should not be reversible, such as a password, but the product does not also use a salt as part of the input.
network
low complexity
ibm CWE-759
4.9
2024-03-20 CVE-2023-35888 Unspecified vulnerability in IBM Security Verify Governance 10.0.2
IBM Security Verify Governance 10.0.2 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security.
network
high complexity
ibm
5.9