Bitboard Password Database Disclosure Vulnerability
BID:8151
Info
Bitboard Password Database Disclosure Vulnerability
| Bugtraq ID: | 8151 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 09 2003 12:00AM |
| Updated: | Jul 09 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to "Marc Bromm" <[email protected]>. |
| Vulnerable: |
BiTSHiFTERS BiTBOARD 2.0 |
| Not Vulnerable: | |
Discussion
Bitboard Password Database Disclosure Vulnerability
BiTBOARD does not sufficiently secure the password database file. It is possible for remote attackers to request the database file and gain access to sensitive information.
BiTBOARD does not sufficiently secure the password database file. It is possible for remote attackers to request the database file and gain access to sensitive information.
Solution / Fix
Bitboard Password Database Disclosure Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Bitboard Password Database Disclosure Vulnerability
References:
References:
- BiTBOARD Homepage (BiTSHiFTERS)
- Information Disclosure Vulnerability in bitboard2 ("Marc Bromm"
)