Vulnerabilities > CVE-2006-3663 - Information Disclosure vulnerability in Finjan Appliance Plaintext Password Storage

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
finjan

Summary

Finjan Vital Security Appliance 5100/8100 NG 8.3.5 stores passwords in plaintext in a backup file, which allows local users to gain privileges. NOTE: the vendor has notified CVE that this issue was fixed in 8.3.6. The vendor reports that version 8.3.6 of Finjan’s Vital Security Appliance (NG 5100/8100), released on 7/23/06, fixes this issue.

Vulnerable Configurations

Part Description Count
Application
Finjan
2