2.1
CVE-2008-7261
- EPSS 0.05%
- Published 20.09.2010 22:00:02
- Last modified 11.04.2025 00:51:21
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-010 records DEBUG messages containing user credentials in the log4j.xml file, which might allow local users to obtain sensitive information by reading this file.
Data is provided by the National Vulnerability Database (NVD)
Ibm ≫ Filenet P8 Application Engine Version3.5.1
Ibm ≫ Filenet P8 Application Engine Version3.5.1 Update001
Ibm ≫ Filenet P8 Application Engine Version3.5.1 Update002
Ibm ≫ Filenet P8 Application Engine Version3.5.1 Update003
Ibm ≫ Filenet P8 Application Engine Version3.5.1 Update004
Ibm ≫ Filenet P8 Application Engine Version3.5.1 Update005
Ibm ≫ Filenet P8 Application Engine Version3.5.1 Update006
Ibm ≫ Filenet P8 Application Engine Version3.5.1 Update007
Ibm ≫ Filenet P8 Application Engine Version3.5.1 Update008
Ibm ≫ Filenet P8 Application Engine Version3.5.1 Update009
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.05% | 0.128 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:P/I:N/A:N
|