Lucene search

K
cveMitreCVE-2002-0114
HistoryMar 25, 2002 - 5:00 a.m.

CVE-2002-0114

2002-03-2505:00:00
mitre
web.nvd.nist.gov
33
cve-2002-0114
emc networker
password
plaintext
local users
gain privileges
security vulnerability
nvd

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.7

Confidence

Low

EPSS

0

Percentile

5.1%

EMC NetWorker (formerly Legato NetWorker) before 7.0 stores passwords in plaintext in the daemon.log file, which allows local users to gain privileges by reading the password from the file. NOTE: this was originally reported for Legato NetWorker 6.1 on the Solaris 7 platform.

Affected configurations

Nvd
Node
emcnetworkerMatch6.1
VendorProductVersionCPE
emcnetworker6.1cpe:2.3:a:emc:networker:6.1:*:*:*:*:*:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.7

Confidence

Low

EPSS

0

Percentile

5.1%

Related for CVE-2002-0114