Nullsoft Winamp Plaintext Authentication Credentials Vulnerability
BID:4781
Info
Nullsoft Winamp Plaintext Authentication Credentials Vulnerability
| Bugtraq ID: | 4781 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | May 20 2002 12:00AM |
| Updated: | May 20 2002 12:00AM |
| Credit: | Discovery of this issue is credited to <[email protected]>. |
| Vulnerable: |
NullSoft Winamp 2.80 |
| Not Vulnerable: | |
Discussion
Nullsoft Winamp Plaintext Authentication Credentials Vulnerability
Nullsoft Winamp is a media player for Microsoft Windows supporting MP3 and other filetypes.
A user's authentication credentials for streaming content will be stored in plaintext by Winamp.
Local attackers may exploit this situation to gain access to the credentials for streaming content that has been accessed by that user.
This issue was reported for Nullsoft Winamp 2.80. Other versions may also be affected.
Nullsoft Winamp is a media player for Microsoft Windows supporting MP3 and other filetypes.
A user's authentication credentials for streaming content will be stored in plaintext by Winamp.
Local attackers may exploit this situation to gain access to the credentials for streaming content that has been accessed by that user.
This issue was reported for Nullsoft Winamp 2.80. Other versions may also be affected.
Exploit / POC
Nullsoft Winamp Plaintext Authentication Credentials Vulnerability
The streaming content HTTP authentication credentials are stored in plaintext in the 'winamp.ini' file under the headings [HTTP-AUTH] and [winamp]. The attacker only needs to read this file to gain access to the credentials.
The streaming content HTTP authentication credentials are stored in plaintext in the 'winamp.ini' file under the headings [HTTP-AUTH] and [winamp]. The attacker only needs to read this file to gain access to the credentials.
Solution / Fix
Nullsoft Winamp Plaintext Authentication Credentials Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Nullsoft Winamp Plaintext Authentication Credentials Vulnerability
References:
References: