Vulnerabilities > CVE-2015-7819 - Credentials Management vulnerability in multiple products

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
lenovo
ibm
CWE-255

Summary

The DB service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8.1.2.0 allows remote attackers to obtain sensitive administrator-account information via a request on port 40999, as demonstrated by an improperly encrypted password.

Vulnerable Configurations

Part Description Count
Application
Lenovo
1
Application
Ibm
1

Common Weakness Enumeration (CWE)