PT-2004-2670 · Juniper Networks · Netscreen-Security Manager+1
Publicado
2004-01-20
·
Atualizado
2017-07-11
·
CVE-2004-1766
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
NetScreen-Security Manager versions prior to Feature Pack 1
Description
The issue concerns the default installation of NetScreen-Security Manager, where encryption for communication with devices running ScreenOS 5.0 is not enabled. This allows remote attackers to obtain sensitive information via sniffing.
Recommendations
For versions prior to Feature Pack 1, enable encryption for communication with devices running ScreenOS 5.0 to prevent sensitive information from being obtained via sniffing.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Netscreen-Security Manager
Screenos