{"api_version":"1","generated_at":"2026-07-23T06:10:49+00:00","cve":"CVE-2004-1171","urls":{"html":"https://cve.report/CVE-2004-1171","api":"https://cve.report/api/cve/CVE-2004-1171.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2004-1171","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2004-1171"},"summary":{"title":"CVE-2004-1171","description":"KDE 3.2.x and 3.3.0 through 3.3.2, when saving credentials that are (1) manually entered by the user or (2) created by the SMB protocol handler, stores those credentials for plaintext in the user's .desktop file, which may be created with world-readable permissions, which could allow local users to obtain usernames and passwords for remote resources such as SMB shares.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-01-10 05:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"2.1","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1292.html","name":"http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1292.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.ciac.org/ciac/bulletins/p-051.shtml","name":"http://www.ciac.org/ciac/bulletins/p-051.shtml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"P-051: SMB Password Disclosure","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=110178786809694&w=2","name":"http://marc.info/?l=bugtraq&m=110178786809694&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'Password Disclosure for SMB Shares in KDE's Konqueror' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2004:150","name":"http://www.mandriva.com/security/advisories?name=MDKSA-2004:150","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Advisories - Mandriva","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/18267","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/18267","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kde.org/info/security/advisory-20041209-1.txt","name":"http://www.kde.org/info/security/advisory-20041209-1.txt","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"text/plain","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1012471","name":"http://securitytracker.com/id?1012471","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - KDE May Disclose SMB Passwords to Remote Users Via URLs","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=110261063201488&w=2","name":"http://marc.info/?l=bugtraq&m=110261063201488&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'KDE Security Advisory: plain text password exposure' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.gentoo.org/security/en/glsa/glsa-200412-16.xml","name":"http://www.gentoo.org/security/en/glsa/glsa-200412-16.xml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Gentoo Linux Documentation\n--\n  kdelibs, kdebase: Multiple vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.sec-consult.com/index.php?id=118","name":"http://www.sec-consult.com/index.php?id=118","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"404 - Page not found! - SEC Consult","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://secunia.com/advisories/13477","name":"http://secunia.com/advisories/13477","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Secunia - Advisories - Mandrake update for kdebase/kdelibs","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/13486","name":"http://secunia.com/advisories/13486","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Secunia - Advisories - Fedora update for kdebase/kdelibs","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/11866","name":"http://www.securityfocus.com/bid/11866","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"KDE Plaintext Password Disclosure Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://secunia.com/advisories/13560","name":"http://secunia.com/advisories/13560","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Secunia - Advisories - Gentoo update for kdelibs / kdebase","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kb.cert.org/vuls/id/305294","name":"http://www.kb.cert.org/vuls/id/305294","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"],"title":"US-CERT Vulnerability Note VU#305294","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/12248","name":"http://www.osvdb.org/12248","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2004-1171","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2004-1171","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"kde","cpe5":"kde","cpe6":"3.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"kde","cpe5":"kde","cpe6":"3.2.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"kde","cpe5":"kde","cpe6":"3.2.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"kde","cpe5":"kde","cpe6":"3.2.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"kde","cpe5":"kde","cpe6":"3.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"kde","cpe5":"kde","cpe6":"3.3.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"kde","cpe5":"kde","cpe6":"3.3.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"mandrakesoft","cpe5":"mandrake_linux","cpe6":"10.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"mandrakesoft","cpe5":"mandrake_linux","cpe6":"10.0","cpe7":"*","cpe8":"amd64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"mandrakesoft","cpe5":"mandrake_linux","cpe6":"10.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"mandrakesoft","cpe5":"mandrake_linux","cpe6":"10.1","cpe7":"*","cpe8":"x86_64","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"redhat","cpe5":"fedora_core","cpe6":"core_2.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"1171","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"redhat","cpe5":"fedora_core","cpe6":"core_3.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-08T00:39:00.912Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"13486","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/13486"},{"name":"VU#305294","tags":["third-party-advisory","x_refsource_CERT-VN","x_transferred"],"url":"http://www.kb.cert.org/vuls/id/305294"},{"name":"11866","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/11866"},{"name":"1012471","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1012471"},{"name":"P-051","tags":["third-party-advisory","government-resource","x_refsource_CIAC","x_transferred"],"url":"http://www.ciac.org/ciac/bulletins/p-051.shtml"},{"name":"20041129 Password Disclosure for SMB Shares in KDE's Konqueror","tags":["mailing-list","x_refsource_FULLDISC","x_transferred"],"url":"http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1292.html"},{"name":"13560","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/13560"},{"name":"kde-smb-password-plaintext(18267)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/18267"},{"name":"MDKSA-2004:150","tags":["vendor-advisory","x_refsource_MANDRAKE","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2004:150"},{"name":"20041209 KDE Security Advisory: plain text password exposure","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=110261063201488&w=2"},{"name":"12248","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/12248"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.sec-consult.com/index.php?id=118"},{"name":"GLSA-200412-16","tags":["vendor-advisory","x_refsource_GENTOO","x_transferred"],"url":"http://www.gentoo.org/security/en/glsa/glsa-200412-16.xml"},{"name":"20041129 Password Disclosure for SMB Shares in KDE's Konqueror","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=110178786809694&w=2"},{"name":"13477","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/13477"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.kde.org/info/security/advisory-20041209-1.txt"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2004-12-09T00:00:00.000Z","descriptions":[{"lang":"en","value":"KDE 3.2.x and 3.3.0 through 3.3.2, when saving credentials that are (1) manually entered by the user or (2) created by the SMB protocol handler, stores those credentials for plaintext in the user's .desktop file, which may be created with world-readable permissions, which could allow local users to obtain usernames and passwords for remote resources such as SMB shares."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-10T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"13486","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/13486"},{"name":"VU#305294","tags":["third-party-advisory","x_refsource_CERT-VN"],"url":"http://www.kb.cert.org/vuls/id/305294"},{"name":"11866","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/11866"},{"name":"1012471","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1012471"},{"name":"P-051","tags":["third-party-advisory","government-resource","x_refsource_CIAC"],"url":"http://www.ciac.org/ciac/bulletins/p-051.shtml"},{"name":"20041129 Password Disclosure for SMB Shares in KDE's Konqueror","tags":["mailing-list","x_refsource_FULLDISC"],"url":"http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1292.html"},{"name":"13560","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/13560"},{"name":"kde-smb-password-plaintext(18267)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/18267"},{"name":"MDKSA-2004:150","tags":["vendor-advisory","x_refsource_MANDRAKE"],"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2004:150"},{"name":"20041209 KDE Security Advisory: plain text password exposure","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=110261063201488&w=2"},{"name":"12248","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/12248"},{"tags":["x_refsource_MISC"],"url":"http://www.sec-consult.com/index.php?id=118"},{"name":"GLSA-200412-16","tags":["vendor-advisory","x_refsource_GENTOO"],"url":"http://www.gentoo.org/security/en/glsa/glsa-200412-16.xml"},{"name":"20041129 Password Disclosure for SMB Shares in KDE's Konqueror","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=110178786809694&w=2"},{"name":"13477","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/13477"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.kde.org/info/security/advisory-20041209-1.txt"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2004-1171","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"KDE 3.2.x and 3.3.0 through 3.3.2, when saving credentials that are (1) manually entered by the user or (2) created by the SMB protocol handler, stores those credentials for plaintext in the user's .desktop file, which may be created with world-readable permissions, which could allow local users to obtain usernames and passwords for remote resources such as SMB shares."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"13486","refsource":"SECUNIA","url":"http://secunia.com/advisories/13486"},{"name":"VU#305294","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/305294"},{"name":"11866","refsource":"BID","url":"http://www.securityfocus.com/bid/11866"},{"name":"1012471","refsource":"SECTRACK","url":"http://securitytracker.com/id?1012471"},{"name":"P-051","refsource":"CIAC","url":"http://www.ciac.org/ciac/bulletins/p-051.shtml"},{"name":"20041129 Password Disclosure for SMB Shares in KDE's Konqueror","refsource":"FULLDISC","url":"http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1292.html"},{"name":"13560","refsource":"SECUNIA","url":"http://secunia.com/advisories/13560"},{"name":"kde-smb-password-plaintext(18267)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/18267"},{"name":"MDKSA-2004:150","refsource":"MANDRAKE","url":"http://www.mandriva.com/security/advisories?name=MDKSA-2004:150"},{"name":"20041209 KDE Security Advisory: plain text password exposure","refsource":"BUGTRAQ","url":"http://marc.info/?l=bugtraq&m=110261063201488&w=2"},{"name":"12248","refsource":"OSVDB","url":"http://www.osvdb.org/12248"},{"name":"http://www.sec-consult.com/index.php?id=118","refsource":"MISC","url":"http://www.sec-consult.com/index.php?id=118"},{"name":"GLSA-200412-16","refsource":"GENTOO","url":"http://www.gentoo.org/security/en/glsa/glsa-200412-16.xml"},{"name":"20041129 Password Disclosure for SMB Shares in KDE's Konqueror","refsource":"BUGTRAQ","url":"http://marc.info/?l=bugtraq&m=110178786809694&w=2"},{"name":"13477","refsource":"SECUNIA","url":"http://secunia.com/advisories/13477"},{"name":"http://www.kde.org/info/security/advisory-20041209-1.txt","refsource":"CONFIRM","url":"http://www.kde.org/info/security/advisory-20041209-1.txt"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2004-1171","datePublished":"2004-12-10T05:00:00.000Z","dateReserved":"2004-12-10T00:00:00.000Z","dateUpdated":"2024-08-08T00:39:00.912Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-01-10 05:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:3.2:*:*:*:*:*:*:*","matchCriteriaId":"82F69843-978D-4686-BC5B-1D09DA4A21BD"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:3.2.1:*:*:*:*:*:*:*","matchCriteriaId":"ACEE0AED-7918-41E9-A902-AC4070E03132"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:3.2.2:*:*:*:*:*:*:*","matchCriteriaId":"81E19472-47B4-4398-A188-CA5A5D3E7060"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:3.2.3:*:*:*:*:*:*:*","matchCriteriaId":"D17407A2-089E-43A5-9BD5-EFF966F5CC16"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:3.3:*:*:*:*:*:*:*","matchCriteriaId":"9C4B436D-8D6A-473E-B707-26147208808B"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:3.3.1:*:*:*:*:*:*:*","matchCriteriaId":"1E26B353-4985-4116-B97A-5767CDC732F1"},{"vulnerable":true,"criteria":"cpe:2.3:o:kde:kde:3.3.2:*:*:*:*:*:*:*","matchCriteriaId":"9F7180B3-03AC-427C-8CAD-FE06F81C4FF1"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:10.0:*:*:*:*:*:*:*","matchCriteriaId":"A06E5CD0-8BEC-4F4C-9E11-1FEE0563946C"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:10.0:*:amd64:*:*:*:*:*","matchCriteriaId":"A3BDD466-84C9-4CFC-A3A8-7AC0F752FB53"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:10.1:*:*:*:*:*:*:*","matchCriteriaId":"3528DABD-B821-4D23-AE12-614A9CA92C46"},{"vulnerable":true,"criteria":"cpe:2.3:o:mandrakesoft:mandrake_linux:10.1:*:x86_64:*:*:*:*:*","matchCriteriaId":"9E661D58-18DF-4CCF-9892-F873618F4535"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:fedora_core:core_2.0:*:*:*:*:*:*:*","matchCriteriaId":"E6996B14-925B-46B8-982F-3545328B506B"},{"vulnerable":true,"criteria":"cpe:2.3:o:redhat:fedora_core:core_3.0:*:*:*:*:*:*:*","matchCriteriaId":"EC80CF67-C51D-442C-9526-CFEDE84A6304"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2004","CveId":"1171","Ordinal":"1","Title":"CVE-2004-1171","CVE":"CVE-2004-1171","Year":"2004"},"notes":[{"CveYear":"2004","CveId":"1171","Ordinal":"1","NoteData":"KDE 3.2.x and 3.3.0 through 3.3.2, when saving credentials that are (1) manually entered by the user or (2) created by the SMB protocol handler, stores those credentials for plaintext in the user's .desktop file, which may be created with world-readable permissions, which could allow local users to obtain usernames and passwords for remote resources such as SMB shares.","Type":"Description","Title":"CVE-2004-1171"},{"CveYear":"2004","CveId":"1171","Ordinal":"2","NoteData":"2004-12-10","Type":"Other","Title":"Published"},{"CveYear":"2004","CveId":"1171","Ordinal":"3","NoteData":"2017-07-10","Type":"Other","Title":"Modified"}]}}}