CVE-2009-2977

Currently unrated

Key Information:

Vendor
Cisco
Status
Vendor
CVE Published:
27 August 2009

Summary

The Cisco Security Monitoring, Analysis and Response System (CS-MARS) 6.0.4 and earlier stores cleartext passwords in log/sysbacktrace.## files within error-logs.tar.gz archives, which allows context-dependent attackers to obtain sensitive information by reading these files.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.