Hummingbird Exceed 6.0.1.0 inadvertently includes a DLL that was meant for development and testing, which logs user names and passwords in cleartext in the test.log file.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/11512 | mailing list patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/1547 | vdb entry |