IBM Data Risk Manager 2.0.6 stores user credentials in plain clear text which can be read by an authenticated user. IBM X-Force ID: 209947.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/6497499 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/209947 | VDB Entry Vendor Advisory |
Configurations
Information
Published : 2021-10-12 12:15
Updated : 2021-10-18 13:13
NVD link : CVE-2021-38915
Mitre link : CVE-2021-38915
JSON object : View
CWE
CWE-312
Cleartext Storage of Sensitive Information
Products Affected
ibm
- data_risk_manager