CVE Vulnerabilities

CVE-2011-4142

Published: Jan 19, 2012 | Modified: Jan 19, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The Web Search feature in EMC SourceOne Email Management 6.5 before 6.5.2.4033, 6.6 before 6.6.1.2194, and 6.7 before 6.7.2.2033 places cleartext credentials in log files, which allows local users to obtain sensitive information by reading these files.

Affected Software

Name Vendor Start Version End Version
Sourceone_email_management Emc * 6.5.2.3668 (including)
Sourceone_email_management Emc * 6.6.1.2108 (including)
Sourceone_email_management Emc * 6.7.2.0017 (including)
Sourceone_email_management Emc 6.5 (including) 6.5 (including)
Sourceone_email_management Emc 6.6 (including) 6.6 (including)
Sourceone_email_management Emc 6.6.0.1209 (including) 6.6.0.1209 (including)
Sourceone_email_management Emc 6.7 (including) 6.7 (including)

References