Gyach Enhanced (Gyach-E) before 1.0.0 stores passwords in plaintext, which allows attackers to obtain user passwords by reading the configuration file.
References
Configurations
History
20 Nov 2024, 23:54
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.osvdb.org/8834 - | |
References | () http://www.phrozensmoke.com/projects/pyvoicechat/changelog.php - Patch |
Information
Published : 2004-12-31 05:00
Updated : 2024-11-20 23:54
NVD link : CVE-2004-2708
Mitre link : CVE-2004-2708
CVE.ORG link : CVE-2004-2708
JSON object : View
Products Affected
phrozensmoke
- gyach_enhanced
CWE
CWE-255
Credentials Management Errors