Software602 602Pro LAN SUITE 2003 Sensitive User Information Storage Vulnerability
BID:8700
Info
Software602 602Pro LAN SUITE 2003 Sensitive User Information Storage Vulnerability
| Bugtraq ID: | 8700 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 25 2003 12:00AM |
| Updated: | Sep 25 2003 12:00AM |
| Credit: | Discovery credited to Phuong Nguyen. |
| Vulnerable: |
Software602 602Pro LAN SUITE 2003 |
| Not Vulnerable: | |
Discussion
Software602 602Pro LAN SUITE 2003 Sensitive User Information Storage Vulnerability
A problem with the storage of user credentials has been identified in Software602 602Pro LAN SUITE 2003. Because of this, an attacker may be able to gain access to potentially sensitive information.
A problem with the storage of user credentials has been identified in Software602 602Pro LAN SUITE 2003. Because of this, an attacker may be able to gain access to potentially sensitive information.
Exploit / POC
Software602 602Pro LAN SUITE 2003 Sensitive User Information Storage Vulnerability
No exploit is required for this vulnerability. The following proof of concept has been made available by Phuong Nguyen:
http://www.example.com/mail/S030904L.LOG
No exploit is required for this vulnerability. The following proof of concept has been made available by Phuong Nguyen:
http://www.example.com/mail/S030904L.LOG
Solution / Fix
References
Software602 602Pro LAN SUITE 2003 Sensitive User Information Storage Vulnerability
References:
References:
- 602Pro LAN SUITE Product Page (Software602)
- LanSuite 2003 - Multiple Vulnerabilities (Phuong Nguyen
) - Re: LanSuite 2003 - Multiple Vulnerabilities (Stan Bubrouski
)