CVE-2008-6828

Symantec Altiris Deployment Solution 6.x before 6.9.355 SP1 stores the Application Identity Account password in memory in cleartext, which allows local users to gain privileges and modify clients of the Deployment Solution Server.
Configurations

Configuration 1

cpe:2.3:a:symantec:altiris_deployment_solution:*:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.8.282:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.5.299:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.8:sp2:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.9:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.8.378:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.8.380.0:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.9.164:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6:sp1:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.5.248:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.9.176:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6:sp2:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.0:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.8:sp1:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.8:*:*:*:*:*:*:*
cpe:2.3:a:symantec:altiris_deployment_solution:6.8.380:*:*:*:*:*:*:*

Information

Published : 2009-06-08 07:30

Updated : 2017-08-17 01:29


NVD link : CVE-2008-6828

Mitre link : CVE-2008-6828

CWE
CWE-312

Cleartext Storage of Sensitive Information