Lucene search

K
cveMitreCVE-2002-1491
HistorySep 01, 2004 - 4:00 a.m.

CVE-2002-1491

2004-09-0104:00:00
mitre
web.nvd.nist.gov
19
cisco
vpn
macos
plaintext
password
vulnerability
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.8

Confidence

High

EPSS

0

Percentile

5.1%

The Cisco VPN 5000 Client for MacOS before 5.2.2 records the most recently used login password in plaintext when saving “Default Connection” settings, which could allow local users to gain privileges.

Affected configurations

Nvd
Node
ciscovpn_5000_clientMatch5.1.2macos
OR
ciscovpn_5000_clientMatch5.2.1macos
VendorProductVersionCPE
ciscovpn_5000_client5.1.2cpe:2.3:a:cisco:vpn_5000_client:5.1.2:*:macos:*:*:*:*:*
ciscovpn_5000_client5.2.1cpe:2.3:a:cisco:vpn_5000_client:5.2.1:*:macos:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.8

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVE-2002-1491