Peercast places a cleartext password in a query string, which might allow attackers to obtain sensitive information by sniffing the network, or obtaining Referer or browser history information.
Link | Tags |
---|---|
http://osvdb.org/42055 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/34713 | vdb entry |
http://www.securityfocus.com/archive/1/470455/100/0/threaded | mailing list |
http://securityreason.com/securityalert/2774 | third party advisory |