PT-2001-1965 · Igss · Air Messenger Lan Server
Published
2001-10-12
·
Updated
2008-09-05
·
CVE-2001-0786
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Air Messenger LAN Server version 3.4.2
Description
The issue concerns the storage of user passwords in plaintext. Specifically, the passwords are stored in the pUser.Dat file.
Recommendations
For version 3.4.2, consider implementing additional security measures to protect user passwords, such as encrypting the pUser.Dat file or using alternative secure storage methods. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Air Messenger Lan Server