Back to search
CVE-1999-1126
Published: Sep 12, 2001
Modified: Aug 1, 2024
PUBLISHED
Description
Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to obtain sensitive configuration information including usernames, passwords, and SNMP community strings, from (1) swim_swd.log, (2) swim_debug.log, (3) dbi_debug.log, and (4) temporary files whose names begin with "DPR_".
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
I-086
third-party-advisory
government-resource
x_refsource_CIAC
cisco-crm-file-vuln(1575)
vdb-entry
x_refsource_XF
19980813 CRM Temporary File Vulnerability
vendor-advisory
x_refsource_CISCO
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now