CVE-2016-5967

The installation component in IBM Rational Asset Analyzer (RAA) 6.1.0 before FP10 allows local users to discover the WAS Admin password by reading IM native logs.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 16%
VendorProductVersion
ibmrational_asset_analyzer
6.1.0
ibmrational_asset_analyzer
6.1.0.1
ibmrational_asset_analyzer
6.1.0.2
ibmrational_asset_analyzer
6.1.0.3
ibmrational_asset_analyzer
6.1.0.4
ibmrational_asset_analyzer
6.1.0.5
ibmrational_asset_analyzer
6.1.0.6
ibmrational_asset_analyzer
6.1.0.7
ibmrational_asset_analyzer
6.1.0.8
ibmrational_asset_analyzer
6.1.0.9
𝑥
= Vulnerable software versions