First published: Mon Mar 26 2001(Updated: )
Watchguard Firebox II firewall allows users with read-only access to gain read-write access, and administrative privileges, by accessing a file that contains hashed passphrases, and using the hashes during authentication.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Watchguard Firebox II | =4.5 | |
Watchguard Firebox II | =4.3 | |
Watchguard Firebox II | =4.0 | |
Watchguard Firebox II | =4.2 | |
Watchguard Firebox II | =4.1 | |
Watchguard Firebox II | =4.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0203 is considered a high severity vulnerability due to the potential for unauthorized administrative access.
To fix CVE-2001-0203, update your Watchguard Firebox II to the latest version that addresses this vulnerability.
CVE-2001-0203 affects Watchguard Firebox II versions 4.0 through 4.5.
CVE-2001-0203 allows attackers with read-only access to gain read-write access and administrative privileges.
A possible workaround for CVE-2001-0203 would be to restrict access to the configuration files containing hashed passphrases.