7.5

CVE-2005-3316

The installation of ON Symantec Discovery 4.5.x and Symantec Discovery 6.0 creates the (1) DiscoveryWeb and (2) DiscoveryRO database accounts with null passwords, which could allow attackers to gain privileges or prevent Discovery from running by setting another password.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Symantec ≫ Discovery Version 6.0
Symantec ≫ On Command Discovery Version standard_4.5
Symantec ≫ On Command Discovery Version web_4.5
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.39% 0.688
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/17302
http://securityreason.com/securityalert/112
http://securityresponse.symantec.com/avcenter/security/Content/2005.10.24.html
http://securitytracker.com/id?1015097
http://www.securityfocus.com/bid/15188