EMC M&R (aka Watch4Net) before 6.5u1 and ViPR SRM before 3.6.1 might allow remote attackers to obtain cleartext data-center discovery credentials by leveraging certain SRM access to conduct a decryption attack.
References
Information
Published : 2015-01-21 15:17
Updated : 2018-10-09 19:55
NVD link : CVE-2015-0514
Mitre link : CVE-2015-0514
JSON object : View
Products Affected
emc
- watch4net
- vipr_srm
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
