Vulnerabilities > CVE-2002-1521 - Unspecified vulnerability in MDG Computer Services web Server 4D 3.6
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN mdg-computer-services
nessus
Summary
Web Server 4D (WS4D) 3.6 stores passwords in plaintext in the Ws4d.4DD file, which allows attackers to gain privileges.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | CGI abuses |
NASL id | WEBSERVER4D.NASL |
description | According to its Server response header, the remote web server is Webserver 4D 3.6 or lower. Such versions store all usernames and passwords in plaintext in the file |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11151 |
published | 2002-10-26 |
reporter | This script is Copyright (C) 2002-2018 Jason Lidow <[email protected]> |
source | https://www.tenable.com/plugins/nessus/11151 |
title | Webserver 4D Plaintext Password Storage |
code |
|
References
- http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0128.html
- http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0128.html
- http://www.iss.net/security_center/static/10198.php
- http://www.iss.net/security_center/static/10198.php
- http://www.securityfocus.com/bid/5803
- http://www.securityfocus.com/bid/5803