Vulnerability Description
eTrust Intrusion Detection System (formerly SessionWall-3) uses weak encryption (XOR) to store administrative passwords in the registry, which allows local users to easily decrypt the passwords.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Broadcom | Etrust Intrusion Detection | <= 1.4.1.13 |
References
- http://www.securityfocus.com/bid/1341ExploitPatchVendor Advisory
- http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSO.4.21.000
- http://www.securityfocus.com/bid/1341ExploitPatchVendor Advisory
- http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSO.4.21.000
FAQ
What is CVE-2000-0559?
CVE-2000-0559 is a vulnerability with a CVSS score of 2.1 (LOW). eTrust Intrusion Detection System (formerly SessionWall-3) uses weak encryption (XOR) to store administrative passwords in the registry, which allows local users to easily decrypt the passwords.
How severe is CVE-2000-0559?
CVE-2000-0559 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2000-0559?
Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Etrust Intrusion Detection.