CVE-2001-1098
2.1
CVSS SCORE
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N
Description
Cisco PIX firewall manager (PFM) 4.3(2)g logs the enable password in plaintext in the pfm.log file, which could allow local users to obtain the password by reading the file.
CVSS Vector Details
Attack Vector
Local
Attack Complexity
Low
Confidentiality
P
Integrity
None
Availability
None
Affected Software Configurations
- a cisco pix_firewall_manager 4.3\(2\)g * * * * * * *
Weaknesses (CWE)
- NVD-CWE-Other
References & External Links
- http://archives.neohapsis.com/archives/bugtraq/2001-10/0071.html
- http://www.kb.cert.org/vuls/id/639507
- http://www.securityfocus.com/bid/3419
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7265
- http://archives.neohapsis.com/archives/bugtraq/2001-10/0071.html
- http://www.kb.cert.org/vuls/id/639507
- http://www.securityfocus.com/bid/3419
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7265