Loading
Generated remediation guidance and an executive summary. No account required.
SolarWinds Virtualization Manager 6.3.1 and earlier uses weak encryption to store passwords in /etc/shadow, which allows local users with superuser privileges to obtain user passwords via a brute force attack.
Use CWE-200, Solarwinds vendor hub and Virtualization Manager product page to widen CVE-2016-5709 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2016-3643 and CVE-2016-3642 for nearby disclosures in the same product family.