VulnerabilityModified
CVE-2005-0604
lnss.exe in GFI Languard Network Security Scanner 5.0 stores the username and password in memory in plaintext, which could allow local administrators to obtain domain administrator credentials.
MEDIUM 4.6EPSS 0.42%
Does this matter?
Lower severity and a low EPSS score (0.42%). Track it; it rarely justifies an emergency change on its own.
Description
lnss.exe in GFI Languard Network Security Scanner 5.0 stores the username and password in memory in plaintext, which could allow local administrators to obtain domain administrator credentials.
- CVSS 2.0
- 4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 0.42% probability · 35th percentile
- CISA KEV
- Not listed
- Affected
- gfi/languard network security scanner
- Source
- cve@mitre.org
References
- http://marc.info/?l=bugtraq&m=110961644621528&w=2
- http://www.hat-squad.com/en/000160.htmlExploit, Vendor Advisory
- http://marc.info/?l=bugtraq&m=110961644621528&w=2
- http://www.hat-squad.com/en/000160.htmlExploit, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.