Aenovo products (1) aeNovo, (2) aeNovoShop, and (3) aeNovoWYSI store password information in plaintext in the (a) control, (b) content, and (c) page tables, which allows attackers with database access to obtain those passwords and gain privileges.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-10-14T04:00:00
Updated: 2024-08-07T23:01:59.065Z
Reserved: 2005-10-14T00:00:00
Link: CVE-2005-3209
Vulnrichment
No data.
NVD
Status : Modified
Published: 2005-10-14T10:02:00.000
Modified: 2024-11-21T00:01:21.730
Link: CVE-2005-3209
Redhat
No data.