Information Disclosure in EMC Unisphere for VMAX Affects Local Users
CVE-2013-3287
Currently unrated
What is CVE-2013-3287?
The EMC Unisphere for VMAX application prior to version 1.6.1.6 contains a vulnerability that allows local users with access to the console to disclose the cleartext LDAP bind password. This occurs when the software is configured to employ an unspecified level of debug logging in LDAP settings, potentially exposing sensitive authentication information.