An issue was discovered in OpenGamePanel OGP-Agent-Linux through 2021-08-14. $HOME/OGP/Cfg/Config.pm has the root password in cleartext.
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
Link | Tags |
---|---|
https://github.com/OpenGamePanel/OGP-Agent-Linux/commits/master | third party advisory patch |
https://www.exploit-db.com/exploits/50373 | exploit vdb entry third party advisory |