Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Skwashd

#22303de 53,633
10CVSS total
Vulnerabilidades · 2
Média
2
PT-2015-6526
5.0
2015-06-15
Drupal · Services Basic Authentication Module · CVE-2015-4344
**Name of the Vulnerable Software and Affected Versions** Services Basic Authentication module versions 7.x-1.x through 7.x-1.3 **Description** The issue allows remote attackers to bypass intended resource restrictions via vectors related to page caching. **Recommendations** For versions 7.x-1.x through 7.x-1.3, update to a version later than 7.x-1.3 to resolve the issue.
PT-2004-3469
5.0
2004-12-31
Phpgroupware · Phpgroupware · CVE-2004-2578
**Name of the Vulnerable Software and Affected Versions** phpGroupWare versions prior to 0.9.16.002 **Description** The issue concerns the transmission of sensitive information in plaintext. Specifically, the `header admin` and `setup passwords` are sent via cookies without encryption, allowing remote attackers to intercept these passwords through sniffing. **Recommendations** For versions prior to 0.9.16.002, update to version 0.9.16.002 or later to resolve the issue. As a temporary workaround, consider restricting access to the application to minimize the risk of password interception. Avoid using the application over unsecured networks until the update is applied.