| |
Vulnerability CVE-2014-6134
Published: 2015-03-24 Modified: 2015-03-25
Description: |
IBM Rational ClearCase 8.0.0 before 8.0.0.14 and 8.0.1 before 8.0.1.7, when Installation Manager before 1.8.2 is used, retains cleartext server passwords in process memory throughout the installation procedure, which might allow local users to obtain sensitive information by leveraging access to the installation account. |
CVSS2 => (AV:L/AC:H/Au:N/C:P/I:N/A:N)
CVSS Base Score |
Impact Subscore |
Exploitability Subscore |
1.2/10 |
2.9/10 |
1.9/10 |
Exploit range |
Attack complexity |
Authentication |
Local |
High |
No required |
Confidentiality impact |
Integrity impact |
Availability impact |
Partial |
None |
None |
References: |
http://www-01.ibm.com/support/docview.wss?uid=swg21688450
|
|
|
closedb();
?>
Copyright 2024, cxsecurity.com
|
|
|