PT-2005-5440 · Tashcom · Tashcom Aspedit
Basher13
·
Publicado
2005-12-31
·
Atualizado
2008-09-05
·
CVE-2005-4777
CVSS v2.0
4.9
Média
| Vetor | AV:L/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Tashcom ASPEdit version 2.9
Description
The issue allows local users to potentially view the administration password, also known as the FTP password, as it is stored in cleartext in the registry.
Recommendations
For Tashcom ASPEdit version 2.9, consider changing the administration password and storing it securely to prevent unauthorized access. As a temporary workaround, restrict local access to the system to minimize the risk of password exposure. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Tashcom Aspedit