Description
An issue was discovered in Sonatype Nexus Repository Manager 2.x before 2.14.17 and 3.x before 3.22.1. Admin users can retrieve the LDAP server system username/password (as configured in nxrm) in cleartext.
Remediation
References
Related Vulnerabilities
WordPress Plugin Attachment File Icons (AF Icons) Cross-Site Request Forgery (1.3)
PHP Other Vulnerability (CVE-2005-3389)
Phusion Passenger Other Vulnerability (CVE-2014-1832)
Drupal Core 6.x Multiple Vulnerabilities (6.0 - 6.15)
PrestaShop Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-15081)