CVE-2012-2173

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
20 June 2012

Summary

The ODBC driver in IBM Security AppScan Source 7.x and 8.x before 8.6 sends an SHA-1 hash of the connection password during connections to a solidDB database, which allows remote attackers to obtain sensitive information by sniffing the network.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.