CVE-2018-1675: Infoleak
Published Feb 4, 2019
·Updated
IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 could expose password hashes in stored in system memory on target systems that are configured to use TADDM. IBM X-Force ID: 145110.
Affected Software
2 affected components
IBM Tivoli Application Dependency Discovery Manager>=7.2.2.0<=7.2.2.5
IBM Tivoli Application Dependency Discovery Manager>=7.3.0.0<=7.3.0.5
Remediation
Patch Available
Event History
Feb 4, 2019
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2018-1675.
2
What is the severity of CVE-2018-1675?
The severity of CVE-2018-1675 is high with a severity value of 7.5.
3
What is the affected software?
The affected software is IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3.
4
How can the password hashes be exposed?
The password hashes can be exposed in system memory on target systems that are configured to use TADDM.
5
How can I fix CVE-2018-1675?
To fix CVE-2018-1675, it is recommended to apply the necessary patches and updates provided by IBM.