IBM Lotus Notes 7.0, 8.0, and 8.5 stores administrative credentials in cleartext in SURunAs.exe, which allows local users to obtain sensitive information by examining this file, aka SPR JSTN837SEG.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:14
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/39507 - Vendor Advisory | |
References | () http://www-01.ibm.com/support/docview.wss?uid=swg21427073 - | |
References | () http://www.securityfocus.com/bid/39525 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14725 - |
Information
Published : 2010-04-20 15:30
Updated : 2024-11-21 01:14
NVD link : CVE-2010-1487
Mitre link : CVE-2010-1487
CVE.ORG link : CVE-2010-1487
JSON object : View
Products Affected
ibm
- lotus_notes
CWE
CWE-255
Credentials Management Errors