Vulnerability Details CVE-2012-2964
The BreakingPoint Storm appliance before 3.0 requires cleartext credentials for establishing a session from a GUI administrative client, which allows remote attackers to obtain sensitive information by sniffing the network for XML documents.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.4%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2012-2964
-
cpe:2.3:h:breakingpointsystems:breakingpoint_storm_appliance:-
-
cpe:2.3:o:breakingpointsystems:breakingpoint_storm_appliance_ctm:1.2
-
cpe:2.3:o:breakingpointsystems:breakingpoint_storm_appliance_ctm:1.4
-
cpe:2.3:o:breakingpointsystems:breakingpoint_storm_appliance_ctm:1.5
-
cpe:2.3:o:breakingpointsystems:breakingpoint_storm_appliance_ctm:2.0