Learn about CVE-2018-1675 affecting IBM Tivoli Application Dependency Discovery Manager versions 7.2.2 and 7.3. Understand the impact, technical details, and mitigation steps.
IBM Tivoli Application Dependency Discovery Manager versions 7.2.2 and 7.3 are affected by a vulnerability that could expose password hashes in system memory. This CVE was published on November 28, 2018.
Understanding CVE-2018-1675
This CVE impacts IBM Tivoli Application Dependency Discovery Manager versions 7.2.2 and 7.3, potentially exposing sensitive information.
What is CVE-2018-1675?
The presence of password hashes in system memory on target systems using TADDM could be exposed by IBM Tivoli Application Dependency Discovery Manager versions 7.2.2 and 7.3. This vulnerability is identified as IBM X-Force ID 145110.
The Impact of CVE-2018-1675
Technical Details of CVE-2018-1675
IBM Tivoli Application Dependency Discovery Manager versions 7.2.2 and 7.3 are affected by a vulnerability that could expose password hashes in system memory.
Vulnerability Description
The vulnerability allows for the exposure of password hashes in system memory on target systems using TADDM.
Affected Systems and Versions
Exploitation Mechanism
The vulnerability could be exploited by attackers to access password hashes stored in system memory.
Mitigation and Prevention
To address CVE-2018-1675, follow these steps:
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates
Ensure that you apply the official fix released by IBM to mitigate the vulnerability.