ESSearchApplication/palette.do in IBM OmniFind Enterprise Edition 8.x and 9.x includes the administrator password in the HTML source code, which might allow remote attackers to obtain sensitive information by leveraging read access to this file.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2010-11-12T21:00:00
Updated: 2024-08-07T03:26:12.332Z
Reserved: 2010-10-12T00:00:00
Link: CVE-2010-3897
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-11-12T22:00:02.327
Modified: 2024-11-21T01:19:51.263
Link: CVE-2010-3897
Redhat
No data.