Shape Services IM+ Mobile Instant Messenger for Pocket PC 3.10 stores usernames and passwords in plaintext in %PROGRAMFILES%\IMPlus\implus.cfg, which allows local users to obtain sensitive information by reading the file.
References
Link | Resource |
---|---|
http://airscanner.com/security/05081701_implus.htm | Exploit Vendor Advisory |
http://securityreason.com/securityalert/1518 | |
http://www.securityfocus.com/archive/1/445082/100/0/threaded |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2006-09-07 00:04
Updated : 2018-10-17 21:38
NVD link : CVE-2006-4615
Mitre link : CVE-2006-4615
CVE.ORG link : CVE-2006-4615
JSON object : View
Products Affected
shape_services
- im\+_mobile_instant_messenger
CWE