LOW · 2.1

CVE-2007-6267

Citrix EdgeSight 4.2 and 4.5 for Presentation Server, EdgeSight 4.2 and 4.5 for Endpoints, and EdgeSight for NetScaler 1.0 and 1.1 do not properly store database credentials in configuration files, wh...

Vulnerability Description

Citrix EdgeSight 4.2 and 4.5 for Presentation Server, EdgeSight 4.2 and 4.5 for Endpoints, and EdgeSight for NetScaler 1.0 and 1.1 do not properly store database credentials in configuration files, which allows local users to obtain sensitive information.

CVSS Score

2.1

LOW

AV:L/AC:L/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
CitrixEdgesight For Endpoints4.2
CitrixEdgesight For Netscaler1.0
CitrixEdgesight For Presentation Server4.2

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-6267?

CVE-2007-6267 is a vulnerability with a CVSS score of 2.1 (LOW). Citrix EdgeSight 4.2 and 4.5 for Presentation Server, EdgeSight 4.2 and 4.5 for Endpoints, and EdgeSight for NetScaler 1.0 and 1.1 do not properly store database credentials in configuration files, wh...

How severe is CVE-2007-6267?

CVE-2007-6267 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-6267?

Check the references section above for vendor advisories and patch information. Affected products include: Citrix Edgesight For Endpoints, Citrix Edgesight For Netscaler, Citrix Edgesight For Presentation Server.