6.8

CVE-2007-2360

Symantec Norton Ghost, Norton Save & Recovery, LiveState Recovery, and BackupExec System Recovery before 20070426, when remote backups of restore point images are configured, encrypt network share credentials with a key formed by a hash of the username, which allows local users to obtain the credentials by calculating the key.

Data is provided by the National Vulnerability Database (NVD)
SymantecLivestate Recovery Version6.0
SymantecLivestate Recovery Version6.01
SymantecLivestate Recovery Version6.02
SymantecNorton Ghost Version10.0 Editiondell
SymantecNorton Ghost Version10.0 Editionnorton_system_works
SymantecNorton Ghost Version10.01
SymantecNorton Save And Recovery Version1.01 Editionsony_euro
SymantecNorton Save And Recovery Version1.01b Editionnorton_system_works_2007
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.23% 0.424
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.8 3.1 10
AV:L/AC:L/Au:S/C:C/I:C/A:C