LOW
Secure Computing SafeWord RemoteAccess 2.1 allows local users to obtain the UserCenter webportal password, database encryption keys, and signing keys by reading (1) base-64 encoded data in SERVERS\Web\Tomcat\usercenter\WEB-INF\login.conf and (2) plaintext data in SERVERS\Shared\signers.cfg
Published Oct 17, 2006
2.1
LOWCVSS 2.0
EPSS 0.21%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.