2.1
CVE-2008-7261
- EPSS 0.35%
- Veröffentlicht 20.09.2010 22:00:02
- Zuletzt bearbeitet 16.06.2026 23:03:56
- Erkennungen
The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-010 records DEBUG messages containing user credentials in the log4j.xml file, which might allow local users to obtain sensitive information by reading this file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Filenet P8 Application Engine Version 3.5.1
Ibm ≫ Filenet P8 Application Engine Version 3.5.1 Update 001
Ibm ≫ Filenet P8 Application Engine Version 3.5.1 Update 002
Ibm ≫ Filenet P8 Application Engine Version 3.5.1 Update 003
Ibm ≫ Filenet P8 Application Engine Version 3.5.1 Update 004
Ibm ≫ Filenet P8 Application Engine Version 3.5.1 Update 005
Ibm ≫ Filenet P8 Application Engine Version 3.5.1 Update 006
Ibm ≫ Filenet P8 Application Engine Version 3.5.1 Update 007
Ibm ≫ Filenet P8 Application Engine Version 3.5.1 Update 008
Ibm ≫ Filenet P8 Application Engine Version 3.5.1 Update 009
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.35% | 0.263 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:P/I:N/A:N
|
http://download2.boulder.ibm.com/sar/CMA/IMA/00yrk/0/readme-ae351-021.htm