IBM Spectrum Protect Plus 10.1.2 may display the vSnap CIFS password in the IBM Spectrum Protect Plus Joblog. This can result in an attacker gaining access to sensitive information as well as vSnap. IBM X-Force ID: 162173.
References
Link | Resource |
---|---|
http://www.ibm.com/support/docview.wss?uid=ibm10886099 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/108899 | Broken Link Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/162173 | VDB Entry Vendor Advisory |
http://www.ibm.com/support/docview.wss?uid=ibm10886099 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/108899 | Broken Link Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/162173 | VDB Entry Vendor Advisory |
Configurations
History
21 Nov 2024, 04:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.ibm.com/support/docview.wss?uid=ibm10886099 - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/108899 - Broken Link, Third Party Advisory, VDB Entry | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/162173 - VDB Entry, Vendor Advisory |
Information
Published : 2019-06-19 14:15
Updated : 2024-11-21 04:43
NVD link : CVE-2019-4385
Mitre link : CVE-2019-4385
CVE.ORG link : CVE-2019-4385
JSON object : View
Products Affected
ibm
- spectrum_protect_plus
CWE
CWE-522
Insufficiently Protected Credentials