ESSearchApplication/palette.do in IBM OmniFind Enterprise Edition 8.x and 9.x includes the administrator password in the HTML source code, which might allow remote attackers to obtain sensitive information by leveraging read access to this file.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2010-11-12T21:00:00
Updated: 2018-10-10T18:57:01
Reserved: 2010-10-12T00:00:00
Link: CVE-2010-3897
JSON object: View
NVD Information
Status : Modified
Published: 2010-11-12T22:00:02.327
Modified: 2018-10-10T20:06:00.903
Link: CVE-2010-3897
JSON object: View
Redhat Information
No data.
CWE