CVE-2005-0604: Medium severity GFI Languard Network Security Scanner vulnerability
Published Mar 1, 2005
·Updated
lnss.exe in GFI Languard Network Security Scanner 5.0 stores the username and password in memory in plaintext, which could allow local administrators to obtain domain administrator credentials.
Affected Software
1 affected component
GFI Languard Network Security Scanner=5.0
Event History
Mar 1, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0604?
CVE-2005-0604 has a high severity rating due to the risk of exposing domain administrator credentials.
2
How do I fix CVE-2005-0604?
To mitigate CVE-2005-0604, update GFI Languard Network Security Scanner to a version that securely handles stored credentials.
3
What systems are affected by CVE-2005-0604?
CVE-2005-0604 affects GFI Languard Network Security Scanner version 5.0.
4
What information is exposed by CVE-2005-0604?
CVE-2005-0604 exposes usernames and passwords stored in memory in plaintext.
5
Who can exploit CVE-2005-0604?
Local administrators can exploit CVE-2005-0604 to obtain sensitive credentials in the affected software.