cbcvebase.
CVE-2010-3897
published 2010-11-12

CVE-2010-3897: ESSearchApplication/palette.do in IBM OmniFind Enterprise Edition 8.x and 9.x includes the administrator password in the HTML source code, which might allow…

PriorityP421medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
1.24%
65.7th percentile
ESSearchApplication/palette.do in IBM OmniFind Enterprise Edition 8.x and 9.x includes the administrator password in the HTML source code, which might allow remote attackers to obtain sensitive information by leveraging read access to this file.

Affected

5 ranges
VendorProductVersion rangeFixed in
ibmomnifind
ibmomnifind
ibmomnifind
ibmomnifind
ibmomnifind
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.