Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM Scale Out Network Attached Storage (SONAS) 1.3 before 1.3.2.3 requires cleartext storage of LDAP credentials without recommending a less privileged LDAP account, which might allow attackers to obtain sensitive server information by leveraging root access to a client machine.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Scale Out Network Attached Storage 信息泄露漏洞
Vulnerability Description
IBM Scale Out Network Attached Storage(SONAS)是美国IBM公司的一款横向扩展网络连接存储设备,它提供云存储、数据保护和病毒防护等功能。 IBM Scale Out Network Attached Storage (SONAS) 1.3.2.3之前的1.3版本中存在漏洞,该漏洞源于程序未建议使用弱权限的LDAP账户,却要求LDAP证书以明文存储。通过利用root权限访问到客户端机器,攻击者利用该漏洞获得敏感服务器信息。
CVSS Information
N/A
Vulnerability Type
N/A