Unrated severityNVD Advisory· Published Aug 12, 2012· Updated Apr 29, 2026
CVE-2012-2964
CVE-2012-2964
Description
The BreakingPoint Storm appliance before 3.0 requires cleartext credentials for establishing a session from a GUI administrative client, which allows remote attackers to obtain sensitive information by sniffing the network for XML documents.
Affected products
5- cpe:2.3:h:breakingpointsystems:breakingpoint_storm_appliance:-:*:*:*:*:*:*:*
cpe:2.3:o:breakingpointsystems:breakingpoint_storm_appliance_ctm:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:breakingpointsystems:breakingpoint_storm_appliance_ctm:*:*:*:*:*:*:*:*range: <=2.0
- cpe:2.3:o:breakingpointsystems:breakingpoint_storm_appliance_ctm:1.2:*:*:*:*:*:*:*
- cpe:2.3:o:breakingpointsystems:breakingpoint_storm_appliance_ctm:1.4:*:*:*:*:*:*:*
- cpe:2.3:o:breakingpointsystems:breakingpoint_storm_appliance_ctm:1.5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.kb.cert.org/vuls/id/520430nvdUS Government Resource
- www.kb.cert.org/vuls/id/MAPG-8GANCCnvdUS Government Resource
- www.secureworks.com/research/advisories/SWRX-2012-006/nvd
News mentions
0No linked articles in our index yet.