CVE-2018-1738: IBM Security Key Lifecycle Manager

High severity, CVSS 7.1. EPSS: 1.1% chance of exploitation in the next 30 days.

IBM Security Key Lifecycle Manager 2.6, 2.7, 3.0 could allow an authenticated user to obtain highly sensitive information or jeopardize system integrity due to improper authentication mechanisms. IBM X-Force ID: 147907.

Affected products

  • IBM Security Key Lifecycle Manager: from 2.6.0, up to and including 2.6.0.4; from 2.7.0, up to and including 2.7.0.3; from 3.0.0, up to and including 3.0.0.1

Published 2018-10-11. Last modified 2026-06-17.