Cleartext Credential Logging Vulnerability in BlackBerry Enterprise Server and Enterprise Service

Cleartext Credential Logging Vulnerability in BlackBerry Enterprise Server and Enterprise Service

CVE-2014-1469 · MEDIUM Severity

AV:L/AC:L/AU:N/C:C/I:N/A:N

BlackBerry Enterprise Server 5.x before 5.0.4 MR7 and Enterprise Service 10.x before 10.2.2 log cleartext credentials during exception handling, which allows local users to obtain sensitive information by reading the exception log file.

Learn more about our Cis Benchmark Audit For Server Software.