Aenovo products (1) aeNovo, (2) aeNovoShop, and (3) aeNovoWYSI store password information in plaintext in the (a) control, (b) content, and (c) page tables, which allows attackers with database access to obtain those passwords and gain privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-10-14T04:00:00

Updated: 2024-08-07T23:01:59.065Z

Reserved: 2005-10-14T00:00:00

Link: CVE-2005-3209

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2005-10-14T10:02:00.000

Modified: 2017-07-11T01:33:08.190

Link: CVE-2005-3209

cve-icon Redhat

No data.