Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2001-0133

Опубликовано: 12 мар. 2001
Источник: nvd
CVSS2: 10
EPSS Низкий

Описание

The web administration interface for Interscan VirusWall 3.6.x and earlier does not use encryption, which could allow remote attackers to obtain the administrator password to sniff the administrator password via the setpasswd.cgi program or other HTTP GET requests that contain base64 encoded usernames and passwords.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:trend_micro:interscan_viruswall:*:*:*:*:*:*:*:*
Версия до 3.6 (включая)
cpe:2.3:a:trend_micro:interscan_viruswall:3.0.1:*:*:*:*:*:*:*

EPSS

Процентиль: 74%
0.00842
Низкий

10 Critical

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

The web administration interface for Interscan VirusWall 3.6.x and earlier does not use encryption, which could allow remote attackers to obtain the administrator password to sniff the administrator password via the setpasswd.cgi program or other HTTP GET requests that contain base64 encoded usernames and passwords.

EPSS

Процентиль: 74%
0.00842
Низкий

10 Critical

CVSS2

Дефекты

NVD-CWE-Other