PT-2002-2419 · Pgp+1 · Pgp+1

CVE-2002-1696

·

Publicado

2002-12-31

·

Atualizado

2024-02-13

CVSS v2.0

2.1

Baixa

VetorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Microsoft Outlook plug-in PGP versions 7.0, 7.0.3, and 7.0.4
Description The issue arises when the "Automatically decrypt/verify when opening messages" option is checked and the "Always use Secure Viewer when decrypting" option is not checked. In this scenario, if a user replies to an encrypted message, a decrypted copy of the message is silently saved to the hard disk.
Recommendations For Microsoft Outlook plug-in PGP version 7.0, check the "Always use Secure Viewer when decrypting" option to prevent silent saving of decrypted messages. For Microsoft Outlook plug-in PGP version 7.0.3, check the "Always use Secure Viewer when decrypting" option to prevent silent saving of decrypted messages. For Microsoft Outlook plug-in PGP version 7.0.4, check the "Always use Secure Viewer when decrypting" option to prevent silent saving of decrypted messages.

Correção

Cleartext Storage of Sensitive Information

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2002-1696

Produtos afetados

Outlook
Pgp