Required CVE Record Information
Description
IBM ServerGuide before 9.63, UpdateXpress System Packs Installer (UXSPI) before 9.63, and ToolsCenter Suite before 9.63 place credentials in logs, which allows local users to obtain sensitive information by reading a file.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- http://www.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096777 x_transferred
- exchange.xforce.ibmcloud.com: ibm-serverguide-cve20144835-sec-bypass(95629) vdb-entryx_transferred