CVE Database
/

CVE-2002-0487

Back to search

CVE-2002-0487

Published: Jun 11, 2002

Modified: Aug 8, 2024

PUBLISHED

Description

Intellisol Xpede 4.1 stores passwords in plaintext in a Javascript "session timeout" re-authentication capability, which could allow local users with access to gain privileges of other Xpede users by reading the password from the source file, e.g. from the browser's cache.

VendorProductVersions

n/a

n/a

affected
n/a

References

20020322 Xpede passwords exposed (2 vuln.)
mailing-list
x_refsource_BUGTRAQ
4346
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now