Vulnerability Description
Ingate Firewall before 4.6.0 and SIParator before 4.6.0 use cleartext storage for passwords of "administrators with less privileges," which might allow attackers to read these passwords via unknown vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ingate | Ingate Firewall | <= 4.5.2 |
| Ingate | Ingate Siparator | <= 4.5.2 |
Related Weaknesses (CWE)
References
- http://osvdb.org/42171
- http://secunia.com/advisories/27688Vendor Advisory
- http://www.ingate.com/relnote-460.php
- http://www.securityfocus.com/bid/26486
- http://osvdb.org/42171
- http://secunia.com/advisories/27688Vendor Advisory
- http://www.ingate.com/relnote-460.php
- http://www.securityfocus.com/bid/26486
FAQ
What is CVE-2007-6096?
CVE-2007-6096 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Ingate Firewall before 4.6.0 and SIParator before 4.6.0 use cleartext storage for passwords of "administrators with less privileges," which might allow attackers to read these passwords via unknown ve...
How severe is CVE-2007-6096?
CVE-2007-6096 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-6096?
Check the references section above for vendor advisories and patch information. Affected products include: Ingate Ingate Firewall, Ingate Ingate Siparator.