Vulnerabilities > CVE-2007-3788 - Information Disclosure vulnerability in Esoft Instagate EX2 UTM Firmware3.1.20031001/Firmware3.1.20060921/Firmware3.1.20070605

047910
CVSS 7.6 - HIGH
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
high complexity
esoft

Summary

The eSoft InstaGate EX2 UTM device stores the admin password within the settings HTML document, which might allow context-dependent attackers to obtain sensitive information by reading this document.