CVE-2022-43870

Severity CVSS v4.0:
Pending analysis
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
22/02/2023
Last modified:
07/11/2023

Description

IBM Spectrum Virtualize 8.3, 8.4, and 8.5 could disclose SNMPv3 server credentials to an authenticated user in log files. IBM X-Force ID: 239540.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:spectrum_virtualize:8.3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:spectrum_virtualize:8.4.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:spectrum_virtualize:8.5.0.0:*:*:*:*:*:*:*