The Jedox Palo 1.5 client transmits the password in cleartext, which might allow remote attackers to obtain the password by sniffing the network, as demonstrated by starting Excel with the Palo plugin, opening a cube, and performing an Insert View.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2007-07-05T20:00:00
Updated: 2008-11-15T10:00:00
Reserved: 2007-07-05T00:00:00
Link: CVE-2007-3581
JSON object: View
NVD Information
Status : Modified
Published: 2007-07-05T20:30:00.000
Modified: 2008-11-15T06:53:16.407
Link: CVE-2007-3581
JSON object: View
Redhat Information
No data.
CWE