Beveiligingsadvies

CVE-2011-1310

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2011-03-08 21:00:00
Laatst bijgewerkt 2024-09-16 16:28:37
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

The Administrative Scripting Tools component in IBM WebSphere Application Server (WAS) 6.1.0.x before 6.1.0.35 and 7.x before 7.0.0.15, when tracing is enabled, places wsadmin command parameters into the (1) wsadmin.traceout and (2) trace.log files, which allows local users to obtain potentially sensitive information by reading these files.