CVE-2008-7207

RivetTracker before 1.0 stores passwords in cleartext in config.php, which allows local users to discover passwords by reading config.php.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:rivetcode:rivettracker:*:*:*:*:*:*:*:*
cpe:2.3:a:rivetcode:rivettracker:0.1:*:*:*:*:*:*:*

History

21 Nov 2024, 00:58

Type Values Removed Values Added
References () http://osvdb.org/42433 - () http://osvdb.org/42433 -
References () http://www.rivetcode.com/files/rivettracker/rivettracker_1-0.zip - () http://www.rivetcode.com/files/rivettracker/rivettracker_1-0.zip -

Information

Published : 2009-09-11 16:30

Updated : 2024-11-21 00:58


NVD link : CVE-2008-7207

Mitre link : CVE-2008-7207

CVE.ORG link : CVE-2008-7207


JSON object : View

Products Affected

rivetcode

  • rivettracker
CWE
CWE-310

Cryptographic Issues