CVE Vulnerabilities

CVE-2016-5950

Published: Feb 01, 2017 | Modified: Apr 20, 2025
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM Kenexa LCMS Premier on Cloud stores user credentials in plain in clear text which can be read by an authenticated user.

Affected Software

NameVendorStart VersionEnd Version
Kenexa_lcms_premierIbm9.0 (including)9.0 (including)
Kenexa_lcms_premierIbm9.1 (including)9.1 (including)
Kenexa_lcms_premierIbm9.2 (including)9.2 (including)
Kenexa_lcms_premierIbm9.2.1 (including)9.2.1 (including)
Kenexa_lcms_premierIbm9.3 (including)9.3 (including)
Kenexa_lcms_premierIbm9.4 (including)9.4 (including)
Kenexa_lcms_premierIbm9.5 (including)9.5 (including)
Kenexa_lcms_premierIbm10.0 (including)10.0 (including)
Kenexa_lcms_premierIbm10.1 (including)10.1 (including)
Kenexa_lcms_premierIbm10.2 (including)10.2 (including)

References