EAServer Manager in Sybase EAServer 5.2 and 5.3 allows remote authenticated users, possibly guests, to obtain password credentials of arbitrary users via unspecified vectors involving (1) connection caches, (2) open password prompts, and (3) stored custom connection profiles.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sybase easerver 5.3 |
||
sybase easerver 5.2 |