FlashGet Insecure Dialup Credential Storage Vulnerability
BID:9192
Info
FlashGet Insecure Dialup Credential Storage Vulnerability
| Bugtraq ID: | 9192 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 10 2003 12:00AM |
| Updated: | Dec 10 2003 12:00AM |
| Credit: | Discovery is credited to "Rafel Ivgi" <[email protected]>. |
| Vulnerable: |
Amazesoft FlashGet 1.2 Amazesoft FlashGet 1.1 Amazesoft FlashGet 1.0 Amazesoft FlashGet 0.96 a Amazesoft FlashGet 0.96 Amazesoft FlashGet 0.95 Amazesoft FlashGet 0.94 Amazesoft FlashGet 0.93 Amazesoft FlashGet 0.92 Amazesoft FlashGet 0.91 Amazesoft FlashGet 0.9 |
| Not Vulnerable: | |
Discussion
FlashGet Insecure Dialup Credential Storage Vulnerability
FlashGet stores dialup credentials in a user-accessible registry key. The username will be stored in plaintext and the password will be hex-encoded. As a result, malicious local users may obtain these credentials. This presents a security risk if dialup accounts are not shared between users on the system.
This issue was reported in FlashGet 0.9 through 1.2. Other versions may also be affected.
FlashGet stores dialup credentials in a user-accessible registry key. The username will be stored in plaintext and the password will be hex-encoded. As a result, malicious local users may obtain these credentials. This presents a security risk if dialup accounts are not shared between users on the system.
This issue was reported in FlashGet 0.9 through 1.2. Other versions may also be affected.
Exploit / POC
FlashGet Insecure Dialup Credential Storage Vulnerability
There is no exploit required.
There is no exploit required.
Solution / Fix
FlashGet Insecure Dialup Credential Storage Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
FlashGet Insecure Dialup Credential Storage Vulnerability
References:
References:
- FlashGet Homepage (Amazesoft)
- Flashget 0.9 - 1.2 Local DialUp Password Hi-Jacking ("Rafel Ivgi"
)