CVE-2006-1284: Medium severity Symantec Ghost Solutions Suite vulnerability
The installation of SQLAnywhere in Symantec Ghost 8.0 and 8.2, as used in Symantec Ghost Solutions Suite (SGSS) 1.0, includes a default administrator login account and password, which allows local users to gain privileges or modify tasks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-1284?
CVE-2006-1284 has been classified as a high severity vulnerability due to the presence of a default administrator login that can be exploited.
How do I fix CVE-2006-1284?
To fix CVE-2006-1284, change the default administrator login credentials used in SQLAnywhere during the installation of Symantec Ghost.
Which versions of Symantec Ghost are affected by CVE-2006-1284?
CVE-2006-1284 affects Symantec Ghost Solutions Suite 1.0, Norton Ghost 8.0, and Norton Ghost 8.2.
What impact does CVE-2006-1284 have on system security?
The impact of CVE-2006-1284 allows unauthorized local users to gain elevated privileges and potentially modify critical tasks within the software.
Is there a workaround for CVE-2006-1284?
The primary workaround for CVE-2006-1284 is to implement proper credential management by disabling or changing the default admin account.