The NetIQ Identity Manager Oracle EBS driver before 4.0.2.0 sent EBS logs containing the driver authentication password, potentially disclosing this to attackers able to read the EBS tables.
References
Configurations
History
No history.
Information
Published : 2018-03-02 20:29
Updated : 2023-11-07 02:50
NVD link : CVE-2017-9278
Mitre link : CVE-2017-9278
CVE.ORG link : CVE-2017-9278
JSON object : View
Products Affected
netiq
- identity_manager
CWE
CWE-532
Insertion of Sensitive Information into Log File