IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 could allow an authenticated user to obtain sensitive information from log files. IBM X-Force ID: 247602.
The product generates an error message that includes sensitive information about its environment, users, or associated data.
The product writes sensitive information to a log file.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/6962729 | patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/247602 | vdb entry |