hotfoon4.exe in Hotfoon 4.00 stores user names and passwords in cleartext in the hotfoon2 registry key, which allows local users to gain access to user accounts and steal phone service.
References
Configurations
History
20 Nov 2024, 23:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2002-11/0115.html - Exploit | |
References | () http://www.iss.net/security_center/static/10591.php - | |
References | () http://www.securityfocus.com/bid/6155 - |
Information
Published : 2002-12-31 05:00
Updated : 2024-11-20 23:43
NVD link : CVE-2002-2384
Mitre link : CVE-2002-2384
CVE.ORG link : CVE-2002-2384
JSON object : View
Products Affected
hotfoon_corporation
- hotfoon
CWE
CWE-255
Credentials Management Errors