NVD

Id
2073  
Name
CVE-2008-2139  
Description
The rootpw plugin in rPath Appliance Platform Agent 2 and 3 does not re-validate requests from a browser with a valid administrator session, including requests to change the password, which makes it easier for physically proximate attackers to gain privileges and maintain control over the administrator account.  
Reject
 
CVSS Version
2  
CVSS Score
6.5  
Severity
Medium  
CVSS Base Score
6.5  
CVSS Impact Subscore
10  
CVSS Exploit Subscore
2.5  
CVSS Vector
(AV:A/AC:H/Au:S/C:C/I:C/A:C)  
Pub Date
2017-01-03  
Published
2008-05-12  
Modified Date
2008-09-05  
Seq
2008-2139  

Actions