IBM Scale Out Network Attached Storage Administrator Password Information Disclosure Vulnerability
BID:68708
Info
IBM Scale Out Network Attached Storage Administrator Password Information Disclosure Vulnerability
| Bugtraq ID: | 68708 |
| Class: | Design Error |
| CVE: |
CVE-2014-3045 |
| Remote: | No |
| Local: | Yes |
| Published: | Jul 17 2014 12:00AM |
| Updated: | Jul 21 2014 12:29AM |
| Credit: | IBM |
| Vulnerable: |
IBM Scale Out Network Attached Storage 1.3.0.5 IBM Scale Out Network Attached Storage 1.3.0.4 |
| Not Vulnerable: | |
Discussion
IBM Scale Out Network Attached Storage Administrator Password Information Disclosure Vulnerability
IBM Scale Out Network Attached Storage is prone to an information-disclosure vulnerability.
Local attackers can exploit this issue to obtain sensitive information that may aid in launching further attacks.
IBM Scale Out Network Attached Storage 1.3.0.0 through 1.4.3.2 are vulnerable.
IBM Scale Out Network Attached Storage is prone to an information-disclosure vulnerability.
Local attackers can exploit this issue to obtain sensitive information that may aid in launching further attacks.
IBM Scale Out Network Attached Storage 1.3.0.0 through 1.4.3.2 are vulnerable.
Exploit / POC
IBM Scale Out Network Attached Storage Administrator Password Information Disclosure Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
IBM Scale Out Network Attached Storage Administrator Password Information Disclosure Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
IBM Scale Out Network Attached Storage Administrator Password Information Disclosure Vulnerability
References:
References:
- IBM Homepage (IBM)