Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Hiroshi Yokoi

Researcher fromBroadband Security Co., Ltd.
#34984of 53,635
7.5Total CVSS
Vulnerabilities · 1
PT-2023-14214
7.5
2023-02-13
Unknown · Driver Distributor · CVE-2022-43460
**Name of the Vulnerable Software and Affected Versions** Driver Distributor versions 2.2.3.1 and earlier **Description** The issue concerns a vulnerability where passwords are stored in a recoverable format. If an attacker obtains a configuration file of Driver Distributor, the encrypted administrator's credentials may be decrypted. **Recommendations** For Driver Distributor versions 2.2.3.1 and earlier, consider updating to a newer version that addresses the issue of storing passwords in a recoverable format. As a temporary workaround, restrict access to configuration files to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.