Security Advisory

CVE-2006-6607

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-12-18 02:00:00
Last updated 2024-08-07 20:33:59
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The Java Key Store (JKS) for WebSphere Application Server (WAS) for IBM Tivoli Identity Manager (ITIM) 4.6 places the JKS password in a -Djavax.net.ssl.trustStorePassword command line argument, which allows local users to obtain the password by listing the process or using other methods.