CVE-2002-2384

hotfoon4.exe in Hotfoon 4.00 stores user names and passwords in cleartext in the hotfoon2 registry key, which allows local users to gain access to user accounts and steal phone service.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hotfoon_corporation:hotfoon:4.0:*:*:*:*:*:*:*

History

20 Nov 2024, 23:43

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2002-11/0115.html - Exploit () http://archives.neohapsis.com/archives/bugtraq/2002-11/0115.html - Exploit
References () http://www.iss.net/security_center/static/10591.php - () http://www.iss.net/security_center/static/10591.php -
References () http://www.securityfocus.com/bid/6155 - () http://www.securityfocus.com/bid/6155 -

Information

Published : 2002-12-31 05:00

Updated : 2024-11-20 23:43


NVD link : CVE-2002-2384

Mitre link : CVE-2002-2384

CVE.ORG link : CVE-2002-2384


JSON object : View

Products Affected

hotfoon_corporation

  • hotfoon
CWE
CWE-255

Credentials Management Errors