CVE Database
/

CVE-2002-1353

Back to search

CVE-2002-1353

Published: Apr 14, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

LocalWEB2000 HTTP server 2.1.0 stores passwords in plain text under the web document root in users.lst, which allows remote attackers to obtain the passwords via a direct request to users.lst.

VendorProductVersions

n/a

n/a

affected
n/a

References

7740
third-party-advisory
x_refsource_SECUNIA
1005830
vdb-entry
x_refsource_SECTRACK
20021216 LocalWEB 2000 Insecure Password Storage
third-party-advisory
x_refsource_IDEFENSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now