CVE-2013-2951
11.07.2018, 16:29
IBM WebSphere Portal 7.0.0.x and 8.0.0.x write passwords to a trace file when tracing is enabled for the Selfcare Portlet (Profile Management), which allows local users to obtain sensitive information by reading the file. IBM X-Force ID: 83621.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | websphere_portal | 7.0.0.0 |
ibm | websphere_portal | 7.0.0.1 |
ibm | websphere_portal | 7.0.0.2 |
ibm | websphere_portal | 8.0.0.0 |
ibm | websphere_portal | 8.0.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration