|
|
Info |
Last Modified |
| about 1 year ago |
|
|
|
|
|
Description |
Gyach Enhanced contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when the configuration file is accessed, which will disclose the user's passwords to anyone reading the file, resulting in a loss of confidentiality.
|
|
Classification |
Location:
Local Access Required
Attack Type:
Cryptographic,
Information Disclosure
Impact:
Loss of Confidentiality
Exploit:
Exploit Available
Disclosure:
OSVDB Verified
|
|
Solution |
Upgrade to version 1.0.0 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.
|
|
Products |
|
Gyach Enhanced
 |
1.0.0.pre |
0.9.7 |
0.9.6 |
0.9.4 |
|
|
|
|
Credit |
Unknown or Incomplete
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|