VulnerabilityModified
CVE-2011-1742
EMC Data Protection Advisor before 5.8.1 places cleartext account credentials in the DPA configuration file in unspecified circumstances, which might allow local users to obtain sensitive information by reading this file.
LOW 2.1EPSS 0.32%
Does this matter?
Lower severity and a low EPSS score (0.32%). Track it; it rarely justifies an emergency change on its own.
Description
EMC Data Protection Advisor before 5.8.1 places cleartext account credentials in the DPA configuration file in unspecified circumstances, which might allow local users to obtain sensitive information by reading this file.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 0.32% probability · 24th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-255
- Affected
- emc/data protection advisor
- Source
- security_alert@emc.com
References
- http://securityreason.com/securityalert/8318Third Party Advisory
- http://www.securityfocus.com/archive/1/519012/100/0/threadedThird Party Advisory, VDB Entry
- http://securityreason.com/securityalert/8318Third Party Advisory
- http://www.securityfocus.com/archive/1/519012/100/0/threadedThird Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.