CVE-2008-6828

Severity CVSS v4.0:
Pending analysis
Type:
CWE-312 Cleartext Storage of Sensitive Information
Publication date:
08/06/2009
Last modified:
09/04/2025

Description

Symantec Altiris Deployment Solution 6.x before 6.9.355 SP1 stores the Application Identity Account password in memory in cleartext, which allows local users to gain privileges and modify clients of the Deployment Solution Server.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:symantec:altiris_deployment_solution:*:*:*:*:*:*:*:* 6.9.355 (excluding)
cpe:2.3:a:symantec:altiris_deployment_solution:6.9.355:-:*:*:*:*:*:*