Security Advisory

CVE-2006-1210

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-03-14 01:00:00
Last updated 2024-08-07 17:03:28
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The web interface for IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 includes the MySQL database username and password in cleartext in body.phtml, which allows remote attackers to gain privileges by reading the source. NOTE: IBM has privately confirmed to CVE that a fix is available for these issues.