CVE-2014-9577
08.01.2015, 15:59
VDG Security SENSE (formerly DIVA) 2.3.13 sends the user database when a user logs in, which allows remote authenticated users to obtain usernames and password hashes by logging in to TCP port 51410 and reading the response.Enginsight
Vendor | Product | Version |
---|---|---|
vdgsecurity | vdg_sense | 2.3.13 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References