Vulnerability Bulletins

IBM Security Bulletin: IBM Security Identity Manager Adapters passwords exposed in log files (CVE-2014-8923)

   
Affected software IBM
 
It is possible to configure IBM Security Identity Manager Active Directory Adapter for Windows in such a way that the logging of certain activities could result in the log files containing passwords that are in clear text CVE(s): CVE-2014-8923 Affected product(s) and affected version(s): ISIM 7.0 Adapter v6.0.14 for Windows AD 64-bit ISIM 6.0 Adapter v6.0.14 for Windows AD 64-bit TIM 5.1 Adapter v5.1.24 for Windows AD 64-bit Refer to the following reference URLs for

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_security_identity_manager_adapters_passwords_exposed_in_log_files_cve_2014_8923?lang=en_us