Information Disclosure in IBM Tivoli Business Service Manager
CVE-2007-1940 
Currently unrated
What is CVE-2007-1940?
A vulnerability exists in IBM Tivoli Business Service Manager (TBSM) 4.1 prior to Interim Fix 1, which exposes sensitive information by logging passwords in plaintext. This allows local users to potentially gain access to confidential data by reading the 'ncisetup.db' or 'msi.log' files, thus increasing the risk of unauthorized access and data compromise.