login_screen.tcl in aMSN (aka Alvaro's Messenger) before 0.97.1 saves a password after logout, which allows physically proximate attackers to hijack a session by visiting an unattended workstation.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2010-04-20 09:30
Updated : 2010-06-02 21:00
NVD link : CVE-2008-7255
Mitre link : CVE-2008-7255
JSON object : View
CWE
CWE-255
Credentials Management Errors
Products Affected
amsn
- amsn