Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2005-4849

Опубликовано: 31 дек. 2005
Источник: debian

Описание

Apache Derby before 10.1.2.1 exposes the (1) user and (2) password attributes in cleartext via (a) the RDBNAM parameter of the ACCSEC command and (b) the output of the DatabaseMetaData.getURL function, which allows context-dependent attackers to obtain sensitive information.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
derbynot-affectedpackage

Примечания

  • http://issues.apache.org/jira/browse/DERBY-530

  • http://issues.apache.org/jira/browse/DERBY-559

Связанные уязвимости

nvd
около 20 лет назад

Apache Derby before 10.1.2.1 exposes the (1) user and (2) password attributes in cleartext via (a) the RDBNAM parameter of the ACCSEC command and (b) the output of the DatabaseMetaData.getURL function, which allows context-dependent attackers to obtain sensitive information.

github
почти 4 года назад

Apache Derby exposes user and password attributes