Security Advisory

CVE-2012-0742

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-04-09 20:00:00
Last updated 2024-08-06 18:38:13
Assigner ibm
CVSS score not scored
State PUBLISHED

Description

IBM Tivoli Event Pump 4.2.2, when the LOG_REQUESTS and VALIDATE_SOAP_USERS options are enabled, places credentials into the AOPSCLOG (aka AOPLOG) data set, which allows local users to obtain sensitive information by reading the data.