Jetbox One Plaintext Password Storage Vulnerability
BID:10858
Info
Jetbox One Plaintext Password Storage Vulnerability
| Bugtraq ID: | 10858 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Aug 04 2004 12:00AM |
| Updated: | Aug 04 2004 12:00AM |
| Credit: | Ahmad Muammar <[email protected]> disclosed this vulnerability. |
| Vulnerable: |
Jetbox Jetbox One CMS 2.0.8 |
| Not Vulnerable: | |
Discussion
Jetbox One Plaintext Password Storage Vulnerability
It is reported that Jetbox One is prone to a plaintext password storage vulnerability.
A malicious user may use the sensitive data available from this vulnerability to launch further attacks against a vulnerable system.
It should be noted that although this vulnerability has been reported to affect Jetbox One version 2.0.8 other versions might also be affected.
It is reported that Jetbox One is prone to a plaintext password storage vulnerability.
A malicious user may use the sensitive data available from this vulnerability to launch further attacks against a vulnerable system.
It should be noted that although this vulnerability has been reported to affect Jetbox One version 2.0.8 other versions might also be affected.
Exploit / POC
Jetbox One Plaintext Password Storage Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
Jetbox One Plaintext Password Storage Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Jetbox One Plaintext Password Storage Vulnerability
References:
References:
- Jetbox One CMS Home Page (Jetbox)
- vulnerabilities in JetboxOne CMS (ahmad muammar
)