CVE-2008-2291
18.05.2008, 14:20
axengine.exe in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 generates credentials with a fixed salt or without any salt, which makes it easier for remote attackers to guess encrypted domain credentials.Enginsight
Vendor | Product | Version |
---|---|---|
symantec | altiris_deployment_solution | 6.9 ≤ 𝑥 < 6.9.176 |
symantec | altiris_deployment_solution | 6.8 |
symantec | altiris_deployment_solution | 6.8:sp1 |
symantec | altiris_deployment_solution | 6.8:sp2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References