CVE-2013-0531

IBM Security AppScan Enterprise <8.7.0.1 - Info Disclosure

Title source: llm
STIX 2.1

Description

The SSL implementation in IBM Security AppScan Enterprise before 8.7.0.1 enables cipher suites with weak encryption algorithms, which makes it easier for remote attackers to obtain sensitive information by sniffing the network.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21640352
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/84707

Scores

EPSS 0.0072
EPSS Percentile 50.2%

Details

CWE
CWE-310
Status published
Products (17)
ibm/security_appscan 5.6.0.0
ibm/security_appscan 6.0.0.0
ibm/security_appscan 6.0.1.0
ibm/security_appscan 6.0.2.0
ibm/security_appscan 6.1.1.0
ibm/security_appscan 8.0.0.0
ibm/security_appscan 8.0.0.1
ibm/security_appscan 8.0.0.2
ibm/security_appscan 8.0.1.0
ibm/security_appscan 8.0.1.1
... and 7 more
Published Sep 08, 2013
Tracked Since Feb 18, 2026