Vulnerabilities > CVE-2003-1439 - Credentials Management vulnerability in Silc Secure Internet Live Conferencing 0.9.11/0.9.12

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
silc
CWE-255

Summary

Secure Internet Live Conferencing (SILC) 0.9.11 and 0.9.12 stores passwords and sessions in plaintext in memory, which could allow local users to obtain sensitive information.

Vulnerable Configurations

Part Description Count
Application
Silc
2

Common Weakness Enumeration (CWE)