|
IBM Security AppScan Source contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when the ODBC driver sends a SHA-1 hash of the connection password when connected to a solidDB, which will disclose password information to a remote attacker who has access to network traffic between the server and the victim.
|