HP Version Control Repository Manager (VCRM) before 2.1.1.730 does not properly handle the "@" character in a proxy password, which could allow attackers with physical access to obtain portions of the password when it is displayed to the screen.
Link | Tags |
---|---|
http://www.securityfocus.com/advisories/8734 | vendor advisory |
http://secunia.com/advisories/15790 | third party advisory patch vendor advisory |
http://securitytracker.com/id?1014267 | vdb entry patch |
http://www.securityfocus.com/bid/14032 | vdb entry patch |