DWebPro Http.ini Plaintext Password Storage Vulnerability
BID:8438
Info
DWebPro Http.ini Plaintext Password Storage Vulnerability
| Bugtraq ID: | 8438 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 18 2003 12:00AM |
| Updated: | Aug 18 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to rUgg1n3 and CyberTalon. |
| Vulnerable: |
DWebPro DWebPro 3.4.1 |
| Not Vulnerable: | |
Exploit / POC
DWebPro Http.ini Plaintext Password Storage Vulnerability
The following proof of concept has been provided:
http.ini file:
[MySQL]
CopyDataToHardDisk=0
DaemonPath=##DWEBPATH##\engine\mysql\bin\mysqld.exe
BaseDir=##DWEBPATH##\engine\mysql
BinDir=##DWEBPATH##\engine\mysql\bin
DataDir=##DWEBPATH##\engine\mysql\data
DestinationDir=##TEMP##\dweb
Overwrite=0
Port=3306
ShutDownOnExit=1
StartMySQL=1
CustomParams=
*Username=root*
*Password=root
The following proof of concept has been provided:
http.ini file:
[MySQL]
CopyDataToHardDisk=0
DaemonPath=##DWEBPATH##\engine\mysql\bin\mysqld.exe
BaseDir=##DWEBPATH##\engine\mysql
BinDir=##DWEBPATH##\engine\mysql\bin
DataDir=##DWEBPATH##\engine\mysql\data
DestinationDir=##TEMP##\dweb
Overwrite=0
Port=3306
ShutDownOnExit=1
StartMySQL=1
CustomParams=
*Username=root*
*Password=root
Solution / Fix
DWebPro Http.ini Plaintext Password Storage Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.