CVE-2012-0742: IBM Tivoli Event Pump

Low severity, CVSS 1.9. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Tivoli Event Pump 4.2.2, when the LOG_REQUESTS and VALIDATE_SOAP_USERS options are enabled, places credentials into the AOPSCLOG (aka AOPLOG) data set, which allows local users to obtain sensitive information by reading the data.

Affected products

  • IBM Tivoli Event Pump: version 4.2.2 only

Published 2012-04-09. Last modified 2026-06-16.