PT-2005-4127 · Symantec · Symantec Discovery

Publicado

2005-10-27

·

Atualizado

2013-07-07

·

CVE-2005-3316

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Symantec Discovery versions 4.5.x through 6.0
Description The issue arises from the installation process of Symantec Discovery, which creates the DiscoveryWeb and DiscoveryRO database accounts with null passwords. This could potentially allow attackers to gain privileges or disrupt the operation of Discovery by setting another password.
Recommendations For Symantec Discovery versions 4.5.x through 6.0, consider setting strong passwords for the DiscoveryWeb and DiscoveryRO database accounts as soon as possible after installation to prevent unauthorized access.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-3316

Produtos afetados

Symantec Discovery