The OS deployment feature in Baramundi Management Suite 7.5 up to and including 8.9 stores credentials in cleartext on deployed machines, which allows remote malicious users to obtain sensitive information by reading a file. NOTE: this ID was also incorrectly mapped to a separate issue in Oracle Outside In, but the correct ID for that issue is CVE-2013-5763.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
baramundi management suite 8.2 |
||
baramundi management suite 8.3 |
||
baramundi management suite 8.0 |
||
baramundi management suite 8.1 |
||
baramundi management suite 7.5 |
||
baramundi management suite 8.5 |
||
baramundi management suite 8.6 |
||
baramundi management suite 7.6 |
||
baramundi management suite 8.9 |
||
baramundi management suite 8.7 |
||
baramundi management suite 8.8 |