EMC Data Protection Advisor before 5.8.1 places cleartext account credentials in the DPA configuration file in unspecified circumstances, which might allow local users to obtain sensitive information by reading this file.
References
Link | Resource |
---|---|
http://securityreason.com/securityalert/8318 | Third Party Advisory |
http://www.securityfocus.com/archive/1/519012/100/0/threaded | Third Party Advisory VDB Entry |
http://securityreason.com/securityalert/8318 | Third Party Advisory |
http://www.securityfocus.com/archive/1/519012/100/0/threaded | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:26
Type | Values Removed | Values Added |
---|---|---|
References | () http://securityreason.com/securityalert/8318 - Third Party Advisory | |
References | () http://www.securityfocus.com/archive/1/519012/100/0/threaded - Third Party Advisory, VDB Entry |
Information
Published : 2011-08-01 19:55
Updated : 2024-11-21 01:26
NVD link : CVE-2011-1742
Mitre link : CVE-2011-1742
CVE.ORG link : CVE-2011-1742
JSON object : View
Products Affected
emc
- data_protection_advisor
CWE
CWE-255
Credentials Management Errors