First published: Sat Jan 17 2015(Updated: )
IBM ServerGuide before 9.63, UpdateXpress System Packs Installer (UXSPI) before 9.63, and ToolsCenter Suite before 9.63 place credentials in logs, which allows local users to obtain sensitive information by reading a file.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM ServerGuide | <=9.60 | |
Ibm Toolscenter Suite | <=9.60 | |
Ibm Updatexpress System Packs Installer | <=9.60 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.