CVE-2019-14483 Information
Jun 07, 2022
cve
Description
AdRem NetCrunch 10.6.0.4587 allows Credentials Disclosure. Every user can read the BSD Linux MacOS and Solaris private keys private keys’ passwords and root passwords stored in the credential manager. Every administrator can read the ESX and Windows passwords stored in the credential manager.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
https://compass-security.com/fileadmin/Research/Advisories/2020-17_CSNC-2019-018_AdRem_NetCrunch_Credentials_Disclosure.txt https://www.adremsoft.com/support/
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
8.8
Share on: