ZeroHour

CVE-2018-1241

CVSS 3.0
8.8 high
EPSS
2%p74
Published
()
Modified
Description

Dell EMC RecoverPoint versions prior to 5.1.2 and RecoverPoint for VMs versions prior to 5.1.1.3, under certain conditions, may leak LDAP password in plain-text into the RecoverPoint log file. An authenticated malicious user with access to the RecoverPoint log files may obtain the exposed LDAP password to use it in further attacks.

Vendors
emc
Products
recoverpoint, recoverpoint for virtual machines
Weakness
CWE-532
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.