CVE-2010-1650

Loading...

General

Score:1.9/10.0
Severity:Low
Category:Cryptography Error

Impact Metrics

Confidentiality:Partial
Integrity:None
Availability:None

Exploitability Metrics

Access Vector:Local
Access Complexity:Medium
Authentication:None

Published on 03/05/10 - Updated on 17/08/17

Description

IBM WebSphere Application Server (WAS) 6.0.x before 6.0.2.41, 6.1.x before 6.1.0.31, and 7.0.x before 7.0.0.11, when the -trace option (aka debugging mode) is enabled, executes debugging statements that print string representations of unspecified objects, which allows attackers to obtain sensitive information by reading the trace output.

Category: Cryptography Error

CWE-310 (Cryptographic Issues)
Weaknesses in this category are related to the use of cryptography.

Security Notices

US National Vulnerability DatabaseCVE-2010-1650

Exploits

No exploits available for this CVE in our database.

Relative technologies

VendorProduct
ibmwebsphere_application_server

Share this vulnerability with:

Twitter Facebook LinkedIn Mail