The Thecus NAS server N8800 with firmware 5.03.01 uses cleartext credentials for administrative authentication, which allows remote attackers to obtain sensitive information by sniffing the network.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://www.7elements.co.uk/news/cve-2013-5669/ | exploit |
http://www.7elements.co.uk/resources/blog/multiple-vulnerabilities-thecus-nas/ | exploit |
http://www.kb.cert.org/vuls/id/105686 | third party advisory us government resource |