CVE-2020-24227

Playground Sessions v2.5.582 (and earlier) for Windows, stores the user credentials in plain text allowing anyone with access to UserProfiles.sol to extract the email and password.
References
Link Resource
https://github.com/nathunandwani/CVE-2020-24227 Exploit Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:playgroundsessions:playground_sessions:*:*:*:*:*:windows:*:*

Information

Published : 2020-11-23 13:15

Updated : 2020-12-02 11:56


NVD link : CVE-2020-24227

Mitre link : CVE-2020-24227


JSON object : View

CWE
CWE-522

Insufficiently Protected Credentials

Advertisement

dedicated server usa

Products Affected

playgroundsessions

  • playground_sessions