Symantec FireWall/VPN Appliance model 200 records a cleartext password for the password administration page, which may be cached on the administrator's local system or in a proxy, which allows attackers to steal the password and gain privileges.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2004-03-14 21:00
Updated : 2017-10-09 18:30
NVD link : CVE-2004-0190
Mitre link : CVE-2004-0190
JSON object : View
CWE
Products Affected
symantec
- firewall_vpn_appliance_200
- firewall_vpn_appliance_200r
- firewall_vpn_appliance_100