CVE-2018-16987
13.09.2018, 15:29
Squash TM through 1.18.0 presents the cleartext passwords of external services in the administration panel, as demonstrated by a ta-server-password field in the HTML source code.Enginsight
| Vendor | Product | Version |
|---|---|---|
| squashtest | squash_tm | 𝑥 ≤ 1.18.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration