4.9
CVE-2007-2361
- EPSS 0.07%
- Published 30.04.2007 22:19:00
- Last modified 09.04.2025 00:30:58
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Symantec Norton Ghost, Norton Save & Recovery, LiveState Recovery, and BackupExec System Recovery before 20070426, when remote backups of restore points images are configured, uses weak permissions (world readable) for a configuration file with network share credentials, which allows local users to obtain the credentials by reading the file.
Data is provided by the National Vulnerability Database (NVD)
Symantec ≫ Backupexec System Recovery Version6.5
Symantec ≫ Backupexec System Recovery Version6.52
Symantec ≫ Backupexec System Recovery Version6.52a
Symantec ≫ Backupexec System Recovery Version6.53
Symantec ≫ Livestate Recovery Version6.0
Symantec ≫ Livestate Recovery Version6.01
Symantec ≫ Livestate Recovery Version6.02
Symantec ≫ Norton Ghost Version10.0
Symantec ≫ Norton Ghost Version10.0 Editiondell
Symantec ≫ Norton Ghost Version10.0 Editionnorton_system_works
Symantec ≫ Norton Ghost Version10.01
Symantec ≫ Norton Save And Recovery Version1.01 Editionsony_euro
Symantec ≫ Norton Save And Recovery Version1.01b Editionnorton_system_works_2007
Symantec ≫ Norton Save And Recovery Version11.0
Symantec ≫ Norton Save And Recovery Version11.01
Symantec ≫ Norton Save And Recovery Version11.01b
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.07% | 0.22 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.9 | 3.9 | 6.9 |
AV:L/AC:L/Au:N/C:C/I:N/A:N
|