The Client Login Extension (CLE) in Novell Identity Manager before 3.5.1 20070730 stores the username and password in a local file, which allows local users to obtain sensitive information by reading this file.
References
Link | Resource |
---|---|
http://osvdb.org/37320 | Broken Link |
http://secunia.com/advisories/26555 | Patch Vendor Advisory |
http://securitytracker.com/id?1018602 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/25420 | Third Party Advisory VDB Entry |
http://www.vupen.com/english/advisories/2007/2957 | Third Party Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/36215 | VDB Entry |
https://secure-support.novell.com/KanisaPlatform/Publishing/177/3329402_f.SAL_Public.html | Patch |
http://osvdb.org/37320 | Broken Link |
http://secunia.com/advisories/26555 | Patch Vendor Advisory |
http://securitytracker.com/id?1018602 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/25420 | Third Party Advisory VDB Entry |
http://www.vupen.com/english/advisories/2007/2957 | Third Party Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/36215 | VDB Entry |
https://secure-support.novell.com/KanisaPlatform/Publishing/177/3329402_f.SAL_Public.html | Patch |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:35
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/37320 - Broken Link | |
References | () http://secunia.com/advisories/26555 - Patch, Vendor Advisory | |
References | () http://securitytracker.com/id?1018602 - Third Party Advisory, VDB Entry | |
References | () http://www.securityfocus.com/bid/25420 - Third Party Advisory, VDB Entry | |
References | () http://www.vupen.com/english/advisories/2007/2957 - Third Party Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/36215 - VDB Entry | |
References | () https://secure-support.novell.com/KanisaPlatform/Publishing/177/3329402_f.SAL_Public.html - Patch |
Information
Published : 2007-08-25 00:17
Updated : 2024-11-21 00:35
NVD link : CVE-2007-4526
Mitre link : CVE-2007-4526
CVE.ORG link : CVE-2007-4526
JSON object : View
Products Affected
novell
- client_login_extension_\(cle\)
netiq
- identity_manager
CWE
CWE-255
Credentials Management Errors