Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fvh2-cqvp-vwxx

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to obtain sensitive configuration information including usernames, passwords, and SNMP community strings, from (1) swim_swd.log, (2) swim_debug.log, (3) dbi_debug.log, and (4) temporary files whose names begin with "DPR_".

Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to obtain sensitive configuration information including usernames, passwords, and SNMP community strings, from (1) swim_swd.log, (2) swim_debug.log, (3) dbi_debug.log, and (4) temporary files whose names begin with "DPR_".

EPSS

Процентиль: 26%
0.00085
Низкий

Связанные уязвимости

nvd
больше 25 лет назад

Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to obtain sensitive configuration information including usernames, passwords, and SNMP community strings, from (1) swim_swd.log, (2) swim_debug.log, (3) dbi_debug.log, and (4) temporary files whose names begin with "DPR_".

EPSS

Процентиль: 26%
0.00085
Низкий