Gyach Enhanced (Gyach-E) before 1.0.0 stores passwords in plaintext, which allows attackers to obtain user passwords by reading the configuration file.
References
Configurations
Information
Published : 2004-12-30 21:00
Updated : 2008-09-05 13:44
NVD link : CVE-2004-2708
Mitre link : CVE-2004-2708
JSON object : View
CWE
CWE-255
Credentials Management Errors
Products Affected
phrozensmoke
- gyach_enhanced