CVE-2009-2977
27.08.2009, 17:30
The Cisco Security Monitoring, Analysis and Response System (CS-MARS) 6.0.4 and earlier stores cleartext passwords in log/sysbacktrace.## files within error-logs.tar.gz archives, which allows context-dependent attackers to obtain sensitive information by reading these files.Enginsight
Vendor | Product | Version |
---|---|---|
cisco | cs-mars | 𝑥 ≤ 6.0.4 |
cisco | cs-mars | 4.1 |
cisco | cs-mars | 4.1.2 |
cisco | cs-mars | 4.1.3 |
cisco | cs-mars | 4.1.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References