Hotline Client 1.8.5 stores sensitive user information, including passwords, in plaintext in the bookmarks file, which could allow local users with access to the bookmarks file to gain privileges by extracting the passwords.
References
Link | Resource |
---|---|
http://www.iss.net/security_center/static/8327.php | Vendor Advisory |
http://www.securityfocus.com/bid/4210 | Exploit Vendor Advisory |
http://marc.info/?l=bugtraq&m=101495128121299&w=2 |
Configurations
Information
Published : 2002-06-24 21:00
Updated : 2016-10-17 19:19
NVD link : CVE-2002-0343
Mitre link : CVE-2002-0343
JSON object : View
CWE
Products Affected
hotline_communications
- hotline_connect