PT-2017-12913 · Ibm · Ibm Infosphere Master Data Management Server
Publicado
2017-07-19
·
Atualizado
2019-10-03
·
CVE-2017-1309
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IBM InfoSphere Master Data Management Server versions 11.0 through 11.6
Description
The issue allows a local user to read user credentials stored in plain text.
Recommendations
For IBM InfoSphere Master Data Management Server versions 11.0 through 11.6, consider restricting access to sensitive areas where credentials are stored to minimize the risk of exploitation.
Correção
Cleartext Storage of Sensitive Information
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Infosphere Master Data Management Server