CVE-2016-5967

EUVD-2016-6901
The installation component in IBM Rational Asset Analyzer (RAA) 6.1.0 before FP10 allows local users to discover the WAS Admin password by reading IM native logs.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 15%
Affected Products (NVD)
VendorProductVersion
ibmrational_asset_analyzer
6.1.0
ibmrational_asset_analyzer
6.1.0.1
ibmrational_asset_analyzer
6.1.0.2
ibmrational_asset_analyzer
6.1.0.3
ibmrational_asset_analyzer
6.1.0.4
ibmrational_asset_analyzer
6.1.0.5
ibmrational_asset_analyzer
6.1.0.6
ibmrational_asset_analyzer
6.1.0.7
ibmrational_asset_analyzer
6.1.0.8
ibmrational_asset_analyzer
6.1.0.9
𝑥
= Vulnerable software versions