PT-2005-4127 · Symantec · Symantec Discovery
Publicado
2005-10-27
·
Atualizado
2013-07-07
·
CVE-2005-3316
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Symantec Discovery versions 4.5.x through 6.0
Description
The issue arises from the installation process of Symantec Discovery, which creates the
DiscoveryWeb and DiscoveryRO database accounts with null passwords. This could potentially allow attackers to gain privileges or disrupt the operation of Discovery by setting another password.Recommendations
For Symantec Discovery versions 4.5.x through 6.0, consider setting strong passwords for the
DiscoveryWeb and DiscoveryRO database accounts as soon as possible after installation to prevent unauthorized access.Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Symantec Discovery