IBM Scale Out Network Attached Storage (SONAS) 1.3 before 1.3.2.3 requires cleartext storage of LDAP credentials without recommending a less privileged LDAP account, which might allow attackers to obtain sensitive server information by leveraging root access to a client machine.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Scale_out_network_attached_storage | Ibm | 1.3 (including) | 1.3 (including) |