4.6
CVE-2004-2049
- EPSS 0.36%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:08:54
- Erkennungen
eSeSIX Thintune thin clients running firmware 2.4.38 and earlier store sensitive usernames and passwords in cleartext in configuration files for the keeper library, which allows attackers to gain access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Esesix ≫ Thintune Extreme Version 2.4.38
Esesix ≫ Thintune L Version 2.4.38
Esesix ≫ Thintune M Version 2.4.38
Esesix ≫ Thintune Mobile Version 2.4.38
Esesix ≫ Thintune S Version 2.4.38
Esesix ≫ Thintune Xm Version 2.4.38
Esesix ≫ Thintune Xs Version 2.4.38
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.36% | 0.272 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
http://marc.info/?l=bugtraq&m=109068491801021&w=2
http://secunia.com/advisories/12154
http://securitytracker.com/id?1010770
http://www.securityfocus.com/bid/10794
http://www.osvdb.org/8247
https://exchange.xforce.ibmcloud.com/vulnerabilities/16795