Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Plaintext Vulnerability in Alan Ward Acart

Plaintext Vulnerability in Alan Ward Acart

From: <parag0d_at_phreaker.net>
Date: 4 Dec 2003 06:08:08 -0000
('binary' encoding is not supported, stored as-is) Vulnerability: Plaintext Vulnerability

Description: All of the data in this database is stored in plain text (not encrypted), including usernames, passwords, credit card numbers, addresses, etc. Many times the database is placed into a web accessible folder (by default)

Exploit: None Required

Solution: The developer needs to implement some type of encryption standard in order to protect the data stored in the database.

Credit: CyberArmy Application and Code Auditing Team
        Parag0d


The developer was contacted about this matter, but never gave any response
Received on Dec 04 2003
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]