PT-2005-1666 · Einstein · Einstein

Published

2005-03-02

·

Updated

2008-09-05

·

CVE-2005-0620

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Einstein version 1.0
Description The issue allows local users to steal credit card information because it is stored in plaintext in the world-readable wallets.dat file.
Recommendations For version 1.0, consider encrypting the credit card information stored in the wallets.dat file to prevent unauthorized access. As a temporary workaround, restrict access to the wallets.dat file to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-0620

Affected Products

Einstein