Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM Tivoli Event Pump 4.2.2, when the LOG_REQUESTS and VALIDATE_SOAP_USERS options are enabled, places credentials into the AOPSCLOG (aka AOPLOG) data set, which allows local users to obtain sensitive information by reading the data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Tivoli Event Pump信息泄露漏洞
Vulnerability Description
IBM Tivoli Event Pump 4.2.2版本中存在漏洞。当LOG_REQUESTS和VALIDATE_SOAP_USERS选项启用时,将证书放于AOPSCLOG (也称AOPLOG)数据设置中,本地用户可通过读取数据获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A