PT-2013-1511 · Ibm · Ibm Scale Out Network Attached Storage
Published
2013-04-07
·
Updated
2017-08-29
·
CVE-2012-0706
CVSS v2.0
3.5
Low
| Vector | AV:N/AC:M/Au:S/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Scale Out Network Attached Storage (SONAS) versions 1.3 through 1.3.2.3 (excluding 1.3.2.3 and later)
Description
The issue allows attackers to potentially obtain sensitive server information by leveraging root access to a client machine, due to the requirement of cleartext storage of LDAP credentials without recommending a less privileged LDAP account.
Recommendations
For IBM Scale Out Network Attached Storage (SONAS) versions 1.3 through 1.3.2.3 (excluding 1.3.2.3 and later), update to version 1.3.2.3 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Scale Out Network Attached Storage