Vulnerabilities > CVE-2017-6911 - Insecure Storage of Sensitive Information vulnerability in USB Pratirodh Project USB Pratirodh

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
local
low complexity
usb-pratirodh-project
CWE-922

Summary

USB Pratirodh is prone to sensitive information disclosure. It stores sensitive information such as username and password in simple usb.xml. An attacker with physical access to the system can modify the file according his own requirements that may aid in further attack.

Vulnerable Configurations

Part Description Count
Application
Usb_Pratirodh_Project
1

Common Weakness Enumeration (CWE)