CVE-2005-2188: High severity McAfee IntruShield Security Management System vulnerability
McAfee IntruShield Security Management System obtains the user ID from the URL, which allows remote attackers to guess the Manager account and possibly gain privileges via a brute force attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2188?
CVE-2005-2188 is considered a medium severity vulnerability due to the possibility of account privilege escalation.
How do I fix CVE-2005-2188?
To fix CVE-2005-2188, users should implement strong account policies to mitigate brute force attacks and consider updating their software if patches are available.
What type of attack does CVE-2005-2188 allow?
CVE-2005-2188 allows remote attackers to perform brute force attacks to guess the Manager account credentials.
Which products are affected by CVE-2005-2188?
CVE-2005-2188 affects the McAfee IntruShield Security Management System.
Can CVE-2005-2188 be exploited remotely?
Yes, CVE-2005-2188 can be exploited remotely, allowing attackers to target the user ID from the URL.