Unprotected storage of credentials in SBR Carrier - CVE-2019-0072
Published: October 10, 2019
SBR Carrier
Detailed vulnerability description
The vulnerability allows a local user to gain access to other users' credentials.
The vulnerability exists in the identity and access management certificate generation procedure due to application stored credentials in plain text in a configuration file on the system. A local user can view contents of the configuration file and gain access to passwords for 3rd party integration.