controller/fetchpwd.php and controller/doAction.php in Hotels_Server through 2018-11-05 rely on base64 in an attempt to protect password storage.
References
Link | Resource |
---|---|
https://github.com/FantasticLBP/Hotels_Server/issues/2 | Exploit Third Party Advisory |
Configurations
Information
Published : 2019-02-08 09:29
Updated : 2020-08-24 10:37
NVD link : CVE-2019-7648
Mitre link : CVE-2019-7648
JSON object : View
CWE
CWE-326
Inadequate Encryption Strength
Products Affected
hotels_server_project
- hotels_server