PT-2001-1751 · Symantec · Symantec Liveupdate

Published

2001-08-14

·

Updated

2017-10-10

·

CVE-2001-0549

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: Symantec LiveUpdate version 1.5
Description: The issue allows local users to obtain passwords because they are stored in cleartext in a registry key.
Recommendations: For Symantec LiveUpdate version 1.5, consider restricting access to the registry key where the proxy passwords are stored to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2001-0549

Affected Products

Symantec Liveupdate