TextPortal Undocumented Username / Password Weakness
BID:7673
Info
TextPortal Undocumented Username / Password Weakness
| Bugtraq ID: | 7673 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 23 2003 12:00AM |
| Updated: | May 23 2003 12:00AM |
| Credit: | Discovery of this issue credited to "bugtracklist.fm" <[email protected]>. |
| Vulnerable: |
TextPortal TextPortal 0.77 TextPortal TextPortal 0.76 TextPortal TextPortal 0.8 |
| Not Vulnerable: | |
Discussion
TextPortal Undocumented Username / Password Weakness
A weakness has been reported for TextPortal that may allow an attacker to obtain unauthorized access. The issue exists due to a weak, undocumented password used for the default administrative user 'god2'.
Access to the 'god2' account could grant unauthorized administrative access to remote attackers.
A weakness has been reported for TextPortal that may allow an attacker to obtain unauthorized access. The issue exists due to a weak, undocumented password used for the default administrative user 'god2'.
Access to the 'god2' account could grant unauthorized administrative access to remote attackers.
Exploit / POC
TextPortal Undocumented Username / Password Weakness
There is no exploit code required.
There is no exploit code required.
Solution / Fix
TextPortal Undocumented Username / Password Weakness
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.