PT-2012-2181 · Akiva · Akiva Webboard
Alexander Fuchs
·
Published
2012-10-04
·
Updated
2012-10-05
·
CVE-2011-5204
CVSS v2.0
1.9
Low
| Vector | AV:L/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Akiva WebBoard versions 8.x
Description
The issue allows local users to obtain sensitive information by reading from the database because passwords are stored in plaintext.
Recommendations
For Akiva WebBoard versions 8.x, update the software to a version that securely stores passwords, such as hashed versions, to prevent unauthorized access to sensitive information.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Akiva Webboard