Vulnerability Details CVE-2013-5391
IBM Worklight Consumer and Enterprise Editions 5.0.x before 5.0.6 Fix Pack 2 and 6.0.x before 6.0.0 Fix Pack 2, and Mobile Foundation Consumer and Enterprise Editions 5.0.x before 5.0.6 Fix Pack 2 and 6.0.0 Fix Pack 2 make it easier for attackers to defeat cryptographic protection mechanisms by leveraging improper initialization of the pseudo random number generator (PRNG) in Android and use of the Java Cryptography Architecture (JCA) by a Worklight program. IBM X-Force ID: 87128.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.4%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 3.5
Products affected by CVE-2013-5391
-
cpe:2.3:a:ibm:mobile_foundation:5.0.0.0
-
cpe:2.3:a:ibm:mobile_foundation:5.0.5.0
-
cpe:2.3:a:ibm:mobile_foundation:5.0.6.0
-
cpe:2.3:a:ibm:mobile_foundation:6.0.0.0
-
cpe:2.3:a:ibm:worklight:5.0.0.0
-
cpe:2.3:a:ibm:worklight:5.0.5.0
-
cpe:2.3:a:ibm:worklight:5.0.6.0
-
cpe:2.3:a:ibm:worklight:6.0.0.0