Description
389 Directory Server before 1.2.7.1 (aka Red Hat Directory Server 8.2) and HP-UX Directory Server before B.08.10.03, when audit logging is enabled, logs the Directory Manager password (nsslapd-rootpw) in cleartext when changing cn=config:nsslapd-rootpw, which might allow local users to obtain sensitive information by reading the log.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2010-3281 | 389 Directory Server before 1.2.7.1 (aka Red Hat Directory Server 8.2) and HP-UX Directory Server before B.08.10.03, when audit logging is enabled, logs the Directory Manager password (nsslapd-rootpw) in cleartext when changing cn=config:nsslapd-rootpw, which might allow local users to obtain sensitive information by reading the log. |
References
History
No history.
Status: PUBLISHED
Assigner: hp
Published:
Updated: 2024-08-07T03:03:18.937Z
Reserved: 2010-09-13T00:00:00.000Z
Link: CVE-2010-3282
No data.
Status : Modified
Published: 2020-01-09T21:15:10.810
Modified: 2024-11-21T01:18:26.053
Link: CVE-2010-3282
OpenCVE Enrichment
No data.
Weaknesses
EUVD