CVE-2013-6305

Severity CVSS v4.0:
Pending analysis
Type:
CWE-310 Cryptographic Issues
Publication date:
21/01/2014
Last modified:
11/04/2025

Description

IBM Platform Symphony 5.2 before build 229037 and 6.1.0.1 before build 229073 uses the same credentials encryption key across different customers' installations, which makes it easier for context-dependent attackers to obtain sensitive information by leveraging knowledge of this key.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:platform_symphony:5.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:platform_symphony:6.1.0.1:*:*:*:*:*:*:*