Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rjcf-r46h-wpm6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The (1) IBM Tivoli Identity Manager Active Directory adapter before 5.1.24 and (2) IBM Security Identity Manager Active Directory adapter before 6.0.14 for IBM Security Identity Manager on Windows, when certain log and trace levels are configured, store the cleartext administrator password in a log file, which allows local users to obtain sensitive information by reading a file.

The (1) IBM Tivoli Identity Manager Active Directory adapter before 5.1.24 and (2) IBM Security Identity Manager Active Directory adapter before 6.0.14 for IBM Security Identity Manager on Windows, when certain log and trace levels are configured, store the cleartext administrator password in a log file, which allows local users to obtain sensitive information by reading a file.

EPSS

Процентиль: 31%
0.00118
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
почти 11 лет назад

The (1) IBM Tivoli Identity Manager Active Directory adapter before 5.1.24 and (2) IBM Security Identity Manager Active Directory adapter before 6.0.14 for IBM Security Identity Manager on Windows, when certain log and trace levels are configured, store the cleartext administrator password in a log file, which allows local users to obtain sensitive information by reading a file.

EPSS

Процентиль: 31%
0.00118
Низкий

Дефекты

CWE-200