HIGH · 7.5

CVE-2004-1694

Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, which allows remote attackers to gain unauthorized access.

Vulnerability Description

Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, which allows remote attackers to gain unauthorized access.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
SymantecOn Command Ccm5.0
SymantecOn Icommand3.0

References

FAQ

What is CVE-2004-1694?

CVE-2004-1694 is a vulnerability with a CVSS score of 7.5 (HIGH). Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, which allows remote attackers to gain unauthorized access.

How severe is CVE-2004-1694?

CVE-2004-1694 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2004-1694?

Check the references section above for vendor advisories and patch information. Affected products include: Symantec On Command Ccm, Symantec On Icommand.