CVE Vulnerabilities

CVE-2024-43186

Plaintext Storage of a Password

Published: Mar 29, 2025 | Modified: Jul 08, 2025
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM InfoSphere Information Server 11.7 could allow an authenticated user to obtain sensitive information that is stored locally under certain conditions.

Weakness

The product stores a password in plaintext within resources such as memory or files.

Affected Software

NameVendorStart VersionEnd Version
Infosphere_information_serverIbm11.7 (including)11.7.1 (excluding)

Potential Mitigations

References