Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Frank Schoolmeesters

Researcher fromKrusader Krew
#52529of 53,635
4Total CVSS
Vulnerabilities · 1
PT-2005-4602
4.0
2005-11-27
Krusader · Krusader · CVE-2005-3856
**Name of the Vulnerable Software and Affected Versions** Krusader versions 1.60.0 through 1.70.0-beta1 **Description** The issue allows passwords to be saved in cleartext when a user enters URLs containing passwords in the panel URL field. This might enable attackers to access other sites. **Recommendations** For Krusader versions 1.60.0 through 1.70.0-beta1, consider removing or securely storing any saved URLs that contain passwords until a fix is available. As a temporary workaround, avoid entering URLs with passwords in the panel URL field to prevent cleartext storage of sensitive information.