PT-2012-4644 · Ibm · Ibm Infosphere Guardium

Publicado

2012-08-29

·

Atualizado

2017-08-29

·

CVE-2012-3312

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM InfoSphere Guardium versions 8.2 and earlier
Description The issue concerns the transmission of cleartext database credentials over the network when the save-password setting is enabled in the datasource definition editor. This allows remote attackers to obtain sensitive information by sniffing the network.
Recommendations For IBM InfoSphere Guardium versions 8.2 and earlier, disable the save-password setting in the datasource definition editor to prevent the transmission of cleartext database credentials.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-3312

Produtos afetados

Ibm Infosphere Guardium