← Retour aux CVEs
CVE-2012-3310
N/ADescription
IBM Tivoli Federated Identity Manager (TFIM) before 6.1.1.14, 6.2.0 before 6.2.0.12, and 6.2.1 before 6.2.1.4 allows context-dependent attackers to discover (1) a cleartext LDAP Bind Password, (2) keystore passwords, (3) a cleartext Basic Authentication password from a client, or (4) a cleartext user password by leveraging a logging configuration with a log trace setting of all.
Details CVE
Score CVSS v3.1N/A
Publie1/17/2013
Derniere modification4/11/2025
Sourcenvd
Observations honeypot0
Produits affectes
ibm:tivoli_federated_identity_manager
Faiblesses (CWE)
CWE-255
References
http://www-01.ibm.com/support/docview.wss?uid=swg1IV26822(psirt@us.ibm.com)
http://www-01.ibm.com/support/docview.wss?uid=swg1IV26823(psirt@us.ibm.com)
http://www-01.ibm.com/support/docview.wss?uid=swg1IV26824(psirt@us.ibm.com)
http://www.ibm.com/support/docview.wss?uid=swg21615977(psirt@us.ibm.com)
https://exchange.xforce.ibmcloud.com/vulnerabilities/77695(psirt@us.ibm.com)
http://www-01.ibm.com/support/docview.wss?uid=swg1IV26822(af854a3a-2127-422b-91ae-364da2661108)
http://www-01.ibm.com/support/docview.wss?uid=swg1IV26823(af854a3a-2127-422b-91ae-364da2661108)
http://www-01.ibm.com/support/docview.wss?uid=swg1IV26824(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=swg21615977(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/77695(af854a3a-2127-422b-91ae-364da2661108)
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.