CVE-2007-6096: Medium severity Ingate Ingate SIParator vulnerability
Ingate Firewall before 4.6.0 and SIParator before 4.6.0 use cleartext storage for passwords of "administrators with less privileges," which might allow attackers to read these passwords via unknown vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-6096?
CVE-2007-6096 is considered a medium severity vulnerability due to the potential exposure of administrator passwords.
How do I fix CVE-2007-6096?
To fix CVE-2007-6096, upgrade Ingate Firewall and SIParator to version 4.6.0 or later which implements secure password storage.
Which versions of Ingate Firewall are affected by CVE-2007-6096?
Ingate Firewall versions prior to 4.6.0, specifically up to version 4.5.2, are affected by CVE-2007-6096.
Which versions of Ingate SIParator are affected by CVE-2007-6096?
Ingate SIParator versions prior to 4.6.0, specifically up to version 4.5.2, are affected by CVE-2007-6096.
What are the potential risks of CVE-2007-6096?
The risks of CVE-2007-6096 include unauthorized access to system administrative credentials, which may lead to broader system compromises.