Vulnerabilities > Symantec > Altiris Deployment Solution > 6.8.380

DATE CVE VULNERABILITY TITLE RISK
2008-04-11 CVE-2008-1754 Cryptographic Issues vulnerability in Symantec Altiris Deployment Solution 6.8/6.8.380
Symantec Altiris Deployment Solution before 6.9.164 stores the Deployment Solution Agent (aka AClient) password in cleartext in memory, which allows local users to obtain sensitive information by dumping the AClient.exe process memory.
local
low complexity
symantec CWE-310
1.7
2008-03-24 CVE-2008-1473 Permissions, Privileges, and Access Controls vulnerability in Symantec Altiris Deployment Solution
The Altiris Client Service (AClient.exe) in Symantec Altiris Deployment Solution 6.8.x before 6.9.164 allows local users to gain privileges via a "Shatter" style attack.
local
low complexity
symantec CWE-264
7.2