meetOneToGo Plaintext Credentials Information Disclosure Vulnerability
BID:54795
Info
meetOneToGo Plaintext Credentials Information Disclosure Vulnerability
| Bugtraq ID: | 54795 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 03 2012 12:00AM |
| Updated: | Aug 03 2012 12:00AM |
| Credit: | John Johnson-Doe |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
meetOneToGo Plaintext Credentials Information Disclosure Vulnerability
meetOneToGo is prone to an information disclosure vulnerability.
Attackers can exploit this issue to gain access to the application credentials by sniffing network traffic through a man-in-the-middle attack. Successful exploits will lead to other attacks.
meetOneToGo 2.2.1 is vulnerable; other versions may also be vulnerable.
meetOneToGo is prone to an information disclosure vulnerability.
Attackers can exploit this issue to gain access to the application credentials by sniffing network traffic through a man-in-the-middle attack. Successful exploits will lead to other attacks.
meetOneToGo 2.2.1 is vulnerable; other versions may also be vulnerable.
Exploit / POC
meetOneToGo Plaintext Credentials Information Disclosure Vulnerability
An attacker may use readily available tools to exploit this issue.
An attacker may use readily available tools to exploit this issue.
Solution / Fix
meetOneToGo Plaintext Credentials Information Disclosure Vulnerability
Solution:
Currently we are not aware of any vendor supplied patches If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor supplied patches If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
meetOneToGo Plaintext Credentials Information Disclosure Vulnerability
References:
References: