IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 has world-readable permissions for (1) /etc/neusecure.conf, (2) /opt/NeuSecure/etc/cms-3.0.236.buildconf, and (3) /opt/NeuSecure/bin/ns_archiver.log, which allows local users to read sensitive information such as passwords. NOTE: IBM has privately confirmed to CVE that a fix is available for these issues.
References
Configurations
Information
Published : 2006-02-21 18:02
Updated : 2018-10-18 09:29
NVD link : CVE-2006-0837
Mitre link : CVE-2006-0837
JSON object : View
CWE
Products Affected
micromuse
- netcool_neusecure


