Cleartext Password Exposure in IBM Rational Directory Server and Administrator
CVE-2014-3089
Currently unrated
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 22 August 2014
Summary
The RDS Java Client library in IBM Rational Directory Server and Rational Directory Administrator contains a security vulnerability that allows local users to access the root password in cleartext format. Specifically, this issue affects versions prior to specific iFix releases for both RDS and RDA. This can lead to unauthorized access and compromise the integrity of the system, making it crucial for administrators to apply available patches to mitigate potential risks.
References
Timeline
Vulnerability published
Vulnerability Reserved