The DevonIT thin-client management tool relies on a shared secret for authentication but transmits the secret in cleartext, which makes it easier for remote attackers to discover the secret value, and consequently obtain administrative control over client machines, by sniffing the network.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2010-3122 | The DevonIT thin-client management tool relies on a shared secret for authentication but transmits the secret in cleartext, which makes it easier for remote attackers to discover the secret value, and consequently obtain administrative control over client machines, by sniffing the network. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| http://www.kb.cert.org/vuls/id/278785 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T16:23:41.349Z
Reserved: 2010-08-25T00:00:00Z
Link: CVE-2010-3122
No data.
Status : Deferred
Published: 2010-08-25T20:00:17.987
Modified: 2025-04-11T00:51:21.963
Link: CVE-2010-3122
No data.
OpenCVE Enrichment
No data.
EUVD