PT-2001-1751 · Symantec · Symantec Liveupdate
Published
2001-08-14
·
Updated
2017-10-10
·
CVE-2001-0549
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
Symantec LiveUpdate version 1.5
Description:
The issue allows local users to obtain passwords because they are stored in cleartext in a registry key.
Recommendations:
For Symantec LiveUpdate version 1.5, consider restricting access to the registry key where the proxy passwords are stored to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Symantec Liveupdate