- Description
- Norton AntiVirus for Internet Email Gateways (NAVIEG) 1.0.1.7 and earlier, and Norton AntiVirus for MS Exchange (NAVMSE) 1.5 and earlier, store the administrator password in cleartext in (1) the navieg.ini file for NAVIEG, and (2) the ModifyPassword registry key in NAVMSE.
- Source
- cve@mitre.org
- NVD status
- Modified
CVSS 2.0
- Type
- Primary
- Base score
- 4.6
- Impact score
- 6.4
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:P/I:P/A:P
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:symantec:norton_antivirus:*:*:internet_email_gateways:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0653E1AA-4FE6-42A2-B221-52DF556544C9",
"versionEndIncluding": "1.0.1.7"
},
{
"criteria": "cpe:2.3:a:symantec:norton_antivirus:*:*:exchange:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "478F8894-81D8-43F3-8C2D-098419BFD96D",
"versionEndIncluding": "1.5"
}
],
"operator": "OR"
}
]
}
]