An issue was discovered in Psyprax before 3.2.2. The Firebird database is accessible with the default user sysdba and password masterke after installation. This allows any user to access it and read and modify the contents, including passwords. Local database files can be accessed directly as well.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.x41-dsec.de/lab/advisories/x41-2020-002-psyprax |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-02-05T19:24:48
Updated: 2024-08-04T11:06:09.893Z
Reserved: 2020-03-13T00:00:00
Link: CVE-2020-10552
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-02-05T20:15:12.777
Modified: 2024-11-21T04:55:34.073
Link: CVE-2020-10552
Redhat
No data.