Secure Internet Live Conferencing (SILC) 0.9.11 and 0.9.12 stores passwords and sessions in plaintext in memory, which could allow local users to obtain sensitive information.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/11244 | vdb entry |
http://www.securityfocus.com/archive/1/309941/30/26090/threaded | mailing list |
http://www.securityfocus.com/bid/6743 | vdb entry |
http://www.securityfocus.com/archive/1/309775 | mailing list exploit |