CVE Vulnerabilities

CVE-2004-2049

Published: Dec 31, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

eSeSIX Thintune thin clients running firmware 2.4.38 and earlier store sensitive usernames and passwords in cleartext in configuration files for the keeper library, which allows attackers to gain access.

Affected Software

NameVendorStart VersionEnd Version
Thintune_extremeEsesix2.4.38 (including)2.4.38 (including)
Thintune_lEsesix2.4.38 (including)2.4.38 (including)
Thintune_mEsesix2.4.38 (including)2.4.38 (including)
Thintune_mobileEsesix2.4.38 (including)2.4.38 (including)
Thintune_sEsesix2.4.38 (including)2.4.38 (including)
Thintune_xmEsesix2.4.38 (including)2.4.38 (including)
Thintune_xsEsesix2.4.38 (including)2.4.38 (including)

References