PT-2006-2300 · Symantec+1 · Symantec Ghost Solution Suite+2

Publicado

2006-03-19

·

Atualizado

2011-03-08

·

CVE-2006-1284

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Symantec Ghost Solutions Suite (SGSS) version 1.0 Symantec Ghost version 8.0 Symantec Ghost version 8.2
Description The issue concerns the installation of SQLAnywhere in Symantec Ghost, which includes a default administrator login account and password. This allows local users to gain privileges or modify tasks.
Recommendations For Symantec Ghost Solutions Suite (SGSS) version 1.0, change the default administrator login account and password to prevent unauthorized access. For Symantec Ghost version 8.0, update the default administrator login account and password to secure the system. For Symantec Ghost version 8.2, modify the default administrator login account and password to prevent privilege escalation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-1284

Produtos afetados

Sqlanywhere
Symantec Ghost
Symantec Ghost Solution Suite