CVE-2010-3282

CVE-2010-3282

389 Directory Server before 1.2.7.1 (aka Red Hat Directory Server 8.2) and HP-UX Directory Server before B.08.10.03, when audit logging is enabled, logs the Directory Manager password (nsslapd-rootpw) in cleartext when changing cn=config:nsslapd-rootpw, which might allow local users to obtain sensitive information by reading the log.

Source: CVE-2010-3282

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다