PT-1999-1543 · Cisco · Cisco Resource Manager

Publicado

1999-12-31

·

Atualizado

2008-09-05

·

CVE-1999-1042

CVSS v2.0

1.2

Baixa

VetorAV:L/AC:H/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Cisco Resource Manager (CRM) versions 1.0 through 1.1
Description The issue allows local users to access sensitive information, including user IDs, passwords, and SNMP community strings, due to world-readable log files and temporary files created by the software.
Recommendations For versions 1.0 and 1.1, consider restricting access to the log files and temporary files to prevent unauthorized users from reading sensitive information. As a temporary workaround, restrict local user access to the system to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-1999-1042

Produtos afetados

Cisco Resource Manager