|
|
Info |
Last Modified |
| 6 months ago |
|
|
|
|
Description |
PalmVNC contains a flaw that may lead to an unauthorized password exposure. It is possible to gain access to plaintext passwords when synchronizing the device, by reading the file "PalmVNCDB.PDB", which may lead to a loss of confidentiality.
|
|
Classification |
Location:
Physical Access Required
Attack Type:
Cryptographic,
Information Disclosure
Impact:
Loss of Confidentiality
Exploit:
Exploit Available
Disclosure:
OSVDB Verified
|
|
Solution |
Currently, there are no known upgrades or patches to correct this issue. It is possible to mitigate the flaw by implementing the following workaround: Remove the backup bit from the Palm VNC database
|
|
Products |
|
PalmVNC
 |
1.40 |
|
|
|
|
Credit |
- FluRDoInG - flur
flurnet.org - FluRNet
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|