Secure Computing SafeWord RemoteAccess 2.1 allows local users to obtain the UserCenter webportal password, database encryption keys, and signing keys by reading (1) base-64 encoded data in SERVERS\Web\Tomcat\usercenter\WEB-INF\login.conf and (2) plaintext data in SERVERS\Shared\signers.cfg. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
References
Configurations
History
21 Nov 2024, 00:18
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/22081 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/20509 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/29515 - |
Information
Published : 2006-10-17 15:07
Updated : 2024-11-21 00:18
NVD link : CVE-2006-5303
Mitre link : CVE-2006-5303
CVE.ORG link : CVE-2006-5303
JSON object : View
Products Affected
securecomputing
- safeword_remoteaccess
CWE