CVE-2015-7819

Loading...

General

Score:5.0/10.0
Severity:Medium
Category:Access Management Error

Impact Metrics

Confidentiality:Partial
Integrity:None
Availability:None

Exploitability Metrics

Access Vector:Network
Access Complexity:Low
Authentication:None

Published on 12/11/15 - Updated on 12/11/15

Description

The DB service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8.1.2.0 allows remote attackers to obtain sensitive administrator-account information via a request on port 40999, as demonstrated by an improperly encrypted password.

Category: Access Management Error

CWE-255 (Credentials Management)
Weaknesses in this category are related to the management of credentials.

Security Notices

US National Vulnerability DatabaseCVE-2015-7819

Exploits

No exploits available for this CVE in our database.

Relative technologies

VendorProduct
ibmsystem_networking_switch_center
lenovoswitch_center

Share this vulnerability with:

Twitter Facebook LinkedIn Mail