389 Directory Server before 1.2.7.1 (aka Red Hat Directory Server 8.2) and HP-UX Directory Server before B.08.10.03, when audit logging is enabled, logs the Directory Manager password (nsslapd-rootpw) in cleartext when changing cn=config:nsslapd-rootpw, which might allow local users to obtain sensitive information by reading the log.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: hp
Published: 2020-01-09T20:52:18
Updated: 2024-08-07T03:03:18.937Z
Reserved: 2010-09-13T00:00:00
Link: CVE-2010-3282
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-01-09T21:15:10.810
Modified: 2020-01-29T15:27:59.437
Link: CVE-2010-3282
Redhat