RSS   Vulnerabilities for 'Contentkeeper'   RSS

2006-09-27
 
CVE-2006-5018

CWE-Other
 

 
ContentKeeper 123.25 and earlier places passwords in cleartext in an INPUT element in cgi-bin/ck/changepw.cgi, which allows remote authenticated users to obtain passwords via this URI.

 


Copyright 2024, cxsecurity.com

 

Back to Top