IBM i Access Client Solutions < 1.1.9.4 - Weak password encryption
CVE-2023-45182 IBM i Access Client Solutions < 1194 - Weak password encryption Timeline Vulnerability reported to vendor: 22092023 New fixed 1194 version released: 08122023 Public disclosure: 15122023 Description IBM i Access Client Solutions for storing user passwords uses AES algorith however 16 bytes encryption key is the combination of static string (Th