AuditWizard 6.3.2, when using "Remote Audit," logs the administrator password in plaintext to LaytonCmdSvc.log, which allows local users to obtain sensitive information by reading the file.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2006-09-08T21:00:00
Updated: 2018-10-17T20:57:01
Reserved: 2006-09-08T00:00:00
Link: CVE-2006-4642
JSON object: View
NVD Information
Status : Modified
Published: 2006-09-08T21:04:00.000
Modified: 2018-10-17T21:38:49.620
Link: CVE-2006-4642
JSON object: View
Redhat Information
No data.
CWE