Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hcc5-5wqj-6mg5

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The SibRaRecoverableSiXaResource class in the Default Messaging Component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.41 does not properly handle a Service Integration Bus (SIB) dump operation involving the First Failure Data Capture (FFDC) introspection code, which allows local users to obtain sensitive information by reading the FFDC log file.

The SibRaRecoverableSiXaResource class in the Default Messaging Component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.41 does not properly handle a Service Integration Bus (SIB) dump operation involving the First Failure Data Capture (FFDC) introspection code, which allows local users to obtain sensitive information by reading the FFDC log file.

EPSS

Процентиль: 16%
0.00051
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
около 14 лет назад

The SibRaRecoverableSiXaResource class in the Default Messaging Component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.41 does not properly handle a Service Integration Bus (SIB) dump operation involving the First Failure Data Capture (FFDC) introspection code, which allows local users to obtain sensitive information by reading the FFDC log file.

EPSS

Процентиль: 16%
0.00051
Низкий

Дефекты

CWE-200