PT-2018-17672 · Unknown · Easy Hosting Control Panel
Published
2018-05-11
·
Updated
2019-10-03
·
CVE-2018-6618
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Easy Hosting Control Panel (EHCP) version 0.37.12.b
Description
The issue allows attackers to obtain sensitive information by leveraging cleartext password storage.
Recommendations
For Easy Hosting Control Panel (EHCP) version 0.37.12.b, consider updating the password storage mechanism to a more secure method, such as hashed password storage, to prevent attackers from obtaining sensitive information.
Exploit
Fix
Insufficiently Protected Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Easy Hosting Control Panel