SepCity Classified Ads stores the admin password in cleartext in data/classifieds.mdb, which allows context-dependent attackers to obtain sensitive information.
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
Link | Tags |
---|---|
https://www.exploit-db.com/exploits/7613 | third party advisory vdb entry exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/48822 | third party advisory vdb entry |
http://www.attrition.org/pipermail/vim/2009-February/002146.html | mailing list |