CVE-2004-2436

high

Description

Computer Associates Unicenter Common Services 3.0 and earlier stores the database "SA" password in cleartext in the TndAddNspTmp.bat file, which could allow local users to gain privileges.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/17562

http://www.securityfocus.com/bid/11277

http://securitytracker.com/id?1011468

http://secunia.com/advisories/12639/

http://osvdb.org/displayvuln.php?osvdb_id=10408

Details

Source: Mitre, NVD

Published: 2004-12-31

Updated: 2026-06-16

Risk Information

CVSS v2

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:N

Severity: Low

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00081