Vulnerability Description
SafeNet SoftRemote VPN Client stores the VPN password (pre-shared key) in cleartext in memory of the IreIKE.exe process, which allows local users to gain sensitive information if they have access to that process.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Safenet | Softremote Vpn Client | All versions |
References
- http://marc.info/?l=bugtraq&m=110791865522076&w=2
- http://securitytracker.com/id?1013134
- http://www.nta-monitor.com/news/vpn-flaws/safenet/index.htmExploitVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19256
- http://marc.info/?l=bugtraq&m=110791865522076&w=2
- http://securitytracker.com/id?1013134
- http://www.nta-monitor.com/news/vpn-flaws/safenet/index.htmExploitVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19256
FAQ
What is CVE-2005-0346?
CVE-2005-0346 is a vulnerability with a CVSS score of 2.1 (LOW). SafeNet SoftRemote VPN Client stores the VPN password (pre-shared key) in cleartext in memory of the IreIKE.exe process, which allows local users to gain sensitive information if they have access to t...
How severe is CVE-2005-0346?
CVE-2005-0346 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-0346?
Check the references section above for vendor advisories and patch information. Affected products include: Safenet Softremote Vpn Client.