CVE-2012-0742
09.04.2012, 20:55
IBM Tivoli Event Pump 4.2.2, when the LOG_REQUESTS and VALIDATE_SOAP_USERS options are enabled, places credentials into the AOPSCLOG (aka AOPLOG) data set, which allows local users to obtain sensitive information by reading the data.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | tivoli_event_pump | 4.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration