CVE Vulnerabilities

CVE-2009-2312

Published: Jul 02, 2009 | Modified: Aug 17, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SmartFilter Web Gateway Security 4.2.1.00 stores user credentials in cleartext in config.txt and uses insecure permissions for this file, which allows local users to gain privileges.

Affected Software

Name Vendor Start Version End Version
Smartfilter Mcafee 4.2.1.00 (including) 4.2.1.00 (including)

References