PT-2008-2072 · Alstrasoft · Alstrasoft Forum Pay Per Post Exchange

T0Pp8Uzz

+1

·

Publicado

2008-01-23

·

Atualizado

2017-09-29

·

CVE-2008-0440

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions AlstraSoft Forum Pay Per Post Exchange version 2.0
Description The issue allows attackers to access user accounts more easily because passwords are stored in cleartext.
Recommendations For version 2.0, update the software to store passwords securely, such as using a hashing algorithm, to prevent unauthorized access to user accounts.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-0440

Produtos afetados

Alstrasoft Forum Pay Per Post Exchange