CVE-2008-7261
20.09.2010, 22:00
The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-010 records DEBUG messages containing user credentials in the log4j.xml file, which might allow local users to obtain sensitive information by reading this file.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | filenet_p8_application_engine | 3.5.1 |
ibm | filenet_p8_application_engine | 3.5.1:001 |
ibm | filenet_p8_application_engine | 3.5.1:002 |
ibm | filenet_p8_application_engine | 3.5.1:003 |
ibm | filenet_p8_application_engine | 3.5.1:004 |
ibm | filenet_p8_application_engine | 3.5.1:005 |
ibm | filenet_p8_application_engine | 3.5.1:006 |
ibm | filenet_p8_application_engine | 3.5.1:007 |
ibm | filenet_p8_application_engine | 3.5.1:008 |
ibm | filenet_p8_application_engine | 3.5.1:009 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration