Networker 19.9 and all prior versions contains a Plain-text Password stored in temporary config file during backup duration in NMDA MySQL Database backups. User has low privilege access to Networker Client system could potentially exploit this vulnerability, leading to the disclosure of configured MySQL Database user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application Database with privileges of the compromised account.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: dell
Published: 2024-01-25T14:53:01.205Z
Updated: 2024-02-06T06:13:49.298Z
Reserved: 2024-01-10T15:23:01.338Z
Link: CVE-2024-22432
JSON object: View
NVD Information
Status : Analyzed
Published: 2024-01-25T15:15:07.923
Modified: 2024-02-01T17:00:46.647
Link: CVE-2024-22432
JSON object: View
Redhat Information
No data.