PT-2008-2072 · Alstrasoft · Alstrasoft Forum Pay Per Post Exchange

·

CVE-2008-0440

·

Publicado

2008-01-23

·

Atualizado

2017-09-29

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions AlstraSoft Forum Pay Per Post Exchange version 2.0
Description The issue allows attackers to access user accounts more easily because passwords are stored in cleartext.
Recommendations For version 2.0, update the software to store passwords securely, such as using a hashing algorithm, to prevent unauthorized access to user accounts.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-0440

Produtos afetados

Alstrasoft Forum Pay Per Post Exchange