CVE-2002-0259 Information

Description

InstantServers MiniPortal 1.1.5 and earlier stores sensitive login and account data in plaintext in (1) .pwd files in the miniportal/apache directory or (2) mplog.txt which could allow local users to gain privileges.

Reference

http://marc.info/?l=bugtraq&m=101329397901071&w=2 http://www.instantservers.com/releases.html http://www.iss.net/security_center/static/8170.php http://www.securityfocus.com/bid/4076

Share on: