IBM WebSphere MQ classes for Java libraries 8.0 before 8.0.0.1 and Websphere MQ Explorer 7.5 before 7.5.0.5 and 8.0 before 8.0.0.2 allow local users to discover preconfigured cleartext passwords via an unspecified trace operation.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/95467 | vdb entry |
http://www-01.ibm.com/support/docview.wss?uid=swg21686339 | vendor advisory |
http://www-01.ibm.com/support/docview.wss?uid=swg1IT04023 | vendor advisory |
http://secunia.com/advisories/59921 | third party advisory |