Vulnerabilities > CVE-2007-2766 - Credentials Management vulnerability in Backup Manager Backup Manager

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
backup-manager
CWE-255

Summary

lib/backup-methods.sh in Backup Manager before 0.7.6 provides the MySQL password as a plaintext command line argument, which allows local users to obtain this password by listing the process and its arguments, related to lib/backup-methods.sh.

Vulnerable Configurations

Part Description Count
Application
Backup_Manager
1

Common Weakness Enumeration (CWE)