PT-2017-8907 · Ibm · Ibm Tivoli Key Lifecycle Manager
Published
2017-02-01
·
Updated
2017-02-11
·
CVE-2016-6117
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Tivoli Key Lifecycle Manager versions 2.5 through 2.6
Description
The issue concerns the deployment of IBM Tivoli Key Lifecycle Manager with active debugging code, which can lead to the disclosure of sensitive information.
Recommendations
For versions 2.5 and 2.6, remove or disable the active debugging code to prevent the disclosure of sensitive information.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Tivoli Key Lifecycle Manager