CVE-2006-1284

Symantec Ghost <8.2 - SQL Injection

Title source: llm
STIX 2.1

Description

The installation of SQLAnywhere in Symantec Ghost 8.0 and 8.2, as used in Symantec Ghost Solutions Suite (SGSS) 1.0, includes a default administrator login account and password, which allows local users to gain privileges or modify tasks.

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1015733
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/19171
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/17018
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/0870

Scores

EPSS 0.0024
EPSS Percentile 47.6%

Details

Status published
Products (3)
symantec/ghost_solutions_suite 1.0
symantec/norton_ghost 8.0
symantec/norton_ghost 8.2
Published Mar 19, 2006
Tracked Since Feb 18, 2026