IBM Sterling Partner Engagement Manager
cpe:2.3:a:ibm:sterling_partner_engagement_manager:*:*:*:*:*:*:*
- >= 6.2.3.0, <= 6.2.3.5
- >= 6.2.4.0, <= 6.2.4.2
A vulnerability in IBM Sterling Partner Engagement Manager versions 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 allows remote attackers to intercept and obtain sensitive information in cleartext. This information can be exposed over a communication channel that unauthorized actors can sniff.
Exploitation of this vulnerability could lead to the unauthorized disclosure of sensitive information transmitted in cleartext.
Users are advised to upgrade to version 6.2.3.6 or 6.2.4.3, depending on their current version. Instructions for downloading these versions are available on the IBM Support Fix Central website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.