Inadequate Account Lockout Setting in IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 Allows Remote Brute Force Attack

Inadequate Account Lockout Setting in IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 Allows Remote Brute Force Attack

CVE-2016-6095 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.

Learn more about our Web Application Penetration Testing UK.