VULNERABILITY INTELLIGENCE

CVE-2016-5709

CVSS score4.7 MEDIUM
EPSS probability1.42%
CISA KEVNot currently listed
Published2016-06-24
Last modified2026-06-17

Description

SolarWinds Virtualization Manager 6.3.1 and earlier uses weak encryption to store passwords in /etc/shadow, which allows local users with superuser privileges to obtain user passwords via a brute force attack.