|
SCO TermVision contains a flaw that may lead to an unauthorized password exposure. TermVision is configured by default to store passwords in a local file using weak encryption. It is possible for a user with access to the local machine to retrieve the file and trivially decrypt it, which may lead to a loss of confidentiality.
|