[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[FD] USB Pratirodh Insecure Password Storage Information Disclosure Vulnerability



Vulnerability Title: USB Pratirodh Insecure Password Storage Information
Disclosure Vulnerability
Affekted Product: USB resistance
Product Homepage: https://cdac.in/index.aspx?id=cs_eps_usb_pra
CVE-ID : CVE-2017-6911
Severity: Medium

*Description:*

USB Pratirodh is prone to sensitive information disclosure. Its Store
sensitive information such as username and password hash in usb.xml file.
An attacker with physical access to the system can modify the file
according his own requirements that may aid in further attack.

*Affected Product:*

USB resistance

*Credit:*

*Sachin Wagh (tiger_tigerboy)*

_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/