eTrust contains a flaw that may lead to an unauthorized password exposure. It is possible to gain access to plaintext passwords by accessing a specific registry key and decoding the encrypted passwords, which may lead to a loss of integrity.
Classification
Location:
Local Access Required
Attack Type:
Cryptographic
Impact:
Loss of Integrity
Exploit:
Exploit Public
Solution
Upgrade to release 4 build 1.4.5 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.