CVE-2002-0114: Medium severity EMC NetWorker vulnerability
EMC NetWorker (formerly Legato NetWorker) before 7.0 stores passwords in plaintext in the daemon.log file, which allows local users to gain privileges by reading the password from the file. NOTE: this was originally reported for Legato NetWorker 6.1 on the Solaris 7 platform.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0114?
CVE-2002-0114 is considered a high severity vulnerability due to the risk of local privilege escalation.
How do I fix CVE-2002-0114?
To mitigate CVE-2002-0114, upgrade EMC NetWorker to a version higher than 7.0 that does not store passwords in plaintext.
Who is affected by CVE-2002-0114?
CVE-2002-0114 affects users of EMC NetWorker version 6.1 running on the Solaris 7 platform.
What type of vulnerability is CVE-2002-0114?
CVE-2002-0114 is a local privilege escalation vulnerability linked to insecure password storage.
Can CVE-2002-0114 be exploited remotely?
CVE-2002-0114 cannot be exploited remotely as it requires local access to the system.