CVE-2020-10532

The AD Helper component in WatchGuard Fireware before 5.8.5.10317 allows remote attackers to discover cleartext passwords via the /domains/list URI.
Configurations

Configuration 1 (hide)

cpe:2.3:o:watchguard:ad_helper_firmware:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:55

Type Values Removed Values Added
References () https://www.redteam-pentesting.de/en/advisories/rt-sa-2020-001/-credential-disclosure-in-watchguard-fireware-ad-helper-component - Exploit, Third Party Advisory () https://www.redteam-pentesting.de/en/advisories/rt-sa-2020-001/-credential-disclosure-in-watchguard-fireware-ad-helper-component - Exploit, Third Party Advisory
References () https://www.watchguard.com/help/docs/help-center/en-US/Content/en-US/Fireware/services/tdr/tdr_ad_helper_c.html - Product () https://www.watchguard.com/help/docs/help-center/en-US/Content/en-US/Fireware/services/tdr/tdr_ad_helper_c.html - Product

Information

Published : 2020-03-12 19:15

Updated : 2024-11-21 04:55


NVD link : CVE-2020-10532

Mitre link : CVE-2020-10532

CVE.ORG link : CVE-2020-10532


JSON object : View

Products Affected

watchguard

  • ad_helper_firmware
CWE
CWE-312

Cleartext Storage of Sensitive Information