The NetIQ Identity Manager Oracle EBS driver before 4.0.2.0 sent EBS logs containing the driver authentication password, potentially disclosing this to attackers able to read the EBS tables.
References
Configurations
History
21 Nov 2024, 03:35
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 3.3 |
References | () https://bugzilla.suse.com/show_bug.cgi?id=1053200 - | |
References | () https://download.novell.com/Download?buildid=DKFkx_xPeaw~ - |
07 Nov 2023, 02:50
Type | Values Removed | Values Added |
---|---|---|
References | () https://bugzilla.suse.com/show_bug.cgi?id=1053200 - | |
References | () https://download.novell.com/Download?buildid=DKFkx_xPeaw~ - |
Information
Published : 2018-03-02 20:29
Updated : 2024-11-21 03:35
NVD link : CVE-2017-9278
Mitre link : CVE-2017-9278
CVE.ORG link : CVE-2017-9278
JSON object : View
Products Affected
netiq
- identity_manager
CWE
CWE-532
Insertion of Sensitive Information into Log File