CVE-2009-2312

Severity CVSS v4.0:
Pending analysis
Type:
CWE-310 Cryptographic Issues
Publication date:
02/07/2009
Last modified:
09/04/2025

Description

SmartFilter Web Gateway Security 4.2.1.00 stores user credentials in cleartext in config.txt and uses insecure permissions for this file, which allows local users to gain privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mcafee:smartfilter:4.2.1.00:*:*:*:*:*:*:*