The installation of ON Symantec Discovery 4.5.x and Symantec Discovery 6.0 creates the (1) DiscoveryWeb and (2) DiscoveryRO database accounts with null passwords, which could allow attackers to gain privileges or prevent Discovery from running by setting another password.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:01
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/17302 - | |
References | () http://securityreason.com/securityalert/112 - | |
References | () http://securityresponse.symantec.com/avcenter/security/Content/2005.10.24.html - | |
References | () http://securitytracker.com/id?1015097 - | |
References | () http://www.securityfocus.com/bid/15188 - |
Information
Published : 2005-10-27 10:02
Updated : 2024-11-21 00:01
NVD link : CVE-2005-3316
Mitre link : CVE-2005-3316
CVE.ORG link : CVE-2005-3316
JSON object : View
Products Affected
symantec
- on_command_discovery
- discovery
CWE