漏洞信息详情
Cisco PIX Firewall Manager明文密码漏洞
漏洞简介
Cisco PIX firewall manager (PFM) 4.3(2)g将开启的密码记录在pfm.log文件的纯文本中,本地用户可以通过读取文件获取密码。
漏洞公告
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] . Cisco recommends replacing the PIX Firewall Manager software with PIX Device Manager.
参考网址
来源:US-CERT Vulnerability Note: VU#639507 名称: VU#639507 链接:http://www.kb.cert.org/vuls/id/639507 来源: BUGTRAQ 名称: 20011010 Vulnerability: Cisco PIX Firewall Manager 链接:http://archives.neohapsis.com/archives/bugtraq/2001-10/0071.html 来源: XF 名称: cisco-pfm-plaintext-password(7265) 链接:http://xforce.iss.net/static/7265.php 来源: BID 名称: 3419 链接:http://www.securityfocus.com/bid/3419
受影响实体
- Cisco Pix_firewall_manager:4.3%282%29g<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...