CVE-2013-3278

Severity CVSS v4.0:
Pending analysis
Type:
CWE-255 Credentials Management
Publication date:
01/10/2013
Last modified:
11/04/2025

Description

EMC VPLEX before VPLEX GeoSynchrony 5.2 SP1 uses cleartext for storage of the LDAP/AD bind password, which allows local users to obtain sensitive information by reading the management-server configuration file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:emc:geosynchrony:*:*:*:*:*:*:*:* 5.2 (including)
cpe:2.3:h:emc:vplex_geo:-:*:*:*:*:*:*:*
cpe:2.3:h:emc:vplex_local:-:*:*:*:*:*:*:*
cpe:2.3:h:emc:vplex_metro:-:*:*:*:*:*:*:*