Executive Summary

Informations
NameCVE-2013-2951First vendor Publication2018-07-11
VendorCveLast vendor Modification2018-09-06

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:L/Au:N/C:P/I:N/A:N)
Cvss Base Score2.1Attack RangeLocal
Cvss Impact Score2.9Attack ComplexityLow
Cvss Expoit Score3.9AuthenticationNone Required
Calculate full CVSS 2.0 Vectors scores

Detail

IBM WebSphere Portal 7.0.0.x and 8.0.0.x write passwords to a trace file when tracing is enabled for the Selfcare Portlet (Profile Management), which allows local users to obtain sensitive information by reading the file. IBM X-Force ID: 83621.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2951

CWE : Common Weakness Enumeration

%idName
100 %CWE-255Credentials Management

CPE : Common Platform Enumeration

TypeDescriptionCount
Application5

Sources (Detail)

SourceUrl
CONFIRM http://www-01.ibm.com/support/docview.wss?uid=swg21642097
XF https://exchange.xforce.ibmcloud.com/vulnerabilities/83621

Alert History

If you want to see full details history, please login or register.
0
1
DateInformations
2018-09-06 21:19:54
  • Multiple Updates
2018-07-11 21:19:27
  • First insertion