IBM WebSphere Portal 7.0.0.x and 8.0.0.x write passwords to a trace file when tracing is enabled for the Selfcare Portlet (Profile Management), which allows local users to obtain sensitive information by reading the file. IBM X-Force ID: 83621.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm websphere portal 7.0.0.0 |
||
ibm websphere portal 7.0.0.2 |
||
ibm websphere portal 8.0.0.1 |
||
ibm websphere portal 7.0.0.1 |
||
ibm websphere portal 8.0.0.0 |