First published: Fri Nov 12 2010(Updated: )
ESSearchApplication/palette.do in IBM OmniFind Enterprise Edition 8.x and 9.x includes the administrator password in the HTML source code, which might allow remote attackers to obtain sensitive information by leveraging read access to this file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM OmniFind | =9.0 | |
IBM OmniFind | =8.0 | |
IBM OmniFind | =8.5 | |
IBM OmniFind | =8.4 | |
IBM OmniFind | =9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.