CVE-2015-5013: Medium severity IBM Security Access Manager For Web 8.0 Firmware vulnerability
The IBM Security Access Manager appliance includes configuration files that contain obfuscated plaintext-passwords which authenticated users can access.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-5013?
CVE-2015-5013 has a medium severity rating due to the exposure of obfuscated plaintext passwords in configuration files.
How do I fix CVE-2015-5013?
To resolve CVE-2015-5013, ensure that sensitive configuration files are secured and not accessible to unauthorized users.
Who is affected by CVE-2015-5013?
CVE-2015-5013 affects users of IBM Security Access Manager for Web and Mobile appliances running version 8.0.
What are the potential risks associated with CVE-2015-5013?
The primary risk associated with CVE-2015-5013 is the potential for unauthorized access to sensitive information due to exposed passwords.
Is there a workaround for CVE-2015-5013?
A possible workaround for CVE-2015-5013 is to regularly audit access permissions for configuration files to limit exposure.