Shape Services IM+ Mobile Instant Messenger for Pocket PC 3.10 stores usernames and passwords in plaintext in %PROGRAMFILES%\IMPlus\implus.cfg, which allows local users to obtain sensitive information by reading the file.
References
| Link | Resource |
|---|---|
| http://airscanner.com/security/05081701_implus.htm | Exploit Vendor Advisory |
| http://securityreason.com/securityalert/1518 | |
| http://www.securityfocus.com/archive/1/445082/100/0/threaded |
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-09-06 17:04
Updated : 2018-10-17 14:38
NVD link : CVE-2006-4615
Mitre link : CVE-2006-4615
JSON object : View
CWE
Products Affected
shape_services
- im\+_mobile_instant_messenger


