CVE-2017-1000171

Mahara Mobile before 1.2.1 is vulnerable to passwords being sent to the Mahara access log in plain text.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mahara:mahara_mobile:*:*:*:*:*:*:*:*

History

21 Nov 2024, 03:04

Type Values Removed Values Added
References () https://github.com/MaharaProject/mahara-mobile/issues/33 - Third Party Advisory () https://github.com/MaharaProject/mahara-mobile/issues/33 - Third Party Advisory

Information

Published : 2017-11-03 18:29

Updated : 2024-11-21 03:04


NVD link : CVE-2017-1000171

Mitre link : CVE-2017-1000171

CVE.ORG link : CVE-2017-1000171


JSON object : View

Products Affected

mahara

  • mahara_mobile
CWE
CWE-532

Insertion of Sensitive Information into Log File