20010726 Snapstream PVS vulnerabilitymailing list
http://archives.neohapsis.com/archives/bugtraq/2001-07/0606.html CVE-2001-1107
SnapStream PVS 1.2 - Plaintext Password
Record summary
CVE-2001-1107 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
SnapStream PVS 1.2a stores its passwords in plaintext in the file SSD.ini, which could allow a remote attacker to gain privileges on the server.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBSnapStream PVS 1.2 - Plaintext PasswordExploitDB exploitby JohnNot analyzed1 file
References
5discuss.snapstream.comConfirmation
http://discuss.snapstream.com/ubb/Forum1/HTML/000216.html 3101vdb entry
http://www.securityfocus.com/bid/3101 snapstream-dot-directory-traversal(6917)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/6917 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-1107