Secure Computing SafeWord RemoteAccess 2.1 allows local users to obtain the UserCenter webportal password, database encryption keys, and signing keys by reading (1) base-64 encoded data in SERVERS\Web\Tomcat\usercenter\WEB-INF\login.conf and (2) plaintext data in SERVERS\Shared\signers.cfg. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
References
Configurations
Information
Published : 2006-10-17 08:07
Updated : 2017-07-19 18:33
NVD link : CVE-2006-5303
Mitre link : CVE-2006-5303
JSON object : View
CWE
Products Affected
securecomputing
- safeword_remoteaccess