Vulnerability Name: | CVE-1999-1280 (CCN-1547) | ||||||||
Assigned: | 1998-12-03 | ||||||||
Published: | 1998-12-03 | ||||||||
Updated: | 2017-12-19 | ||||||||
Summary: | Hummingbird Exceed 6.0.1.0 inadvertently includes a DLL that was meant for development and testing, which logs user names and passwords in cleartext in the test.log file. | ||||||||
CVSS v3 Severity: | 5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Thu, 3 Dec 1998 01:56:53 +1100 Remote Tools w/Exceed v.6.0.1.0 fer 95 Source: MITRE Type: CNA CVE-1999-1280 Source: CCN Type: Hummingbird.Com Web site Hummingbird Exceed Source: CCN Type: OSVDB ID: 11214 Hummingbird Exceed Development DLL test.log Authentication Credential Cleartext Disclosure Source: BUGTRAQ Type: Patch, Vendor Advisory 19981203 Remote Tools w/Exceed v.6.0.1.0 fer 95 Source: XF Type: UNKNOWN exceed-cleartext-passwords(1547) Source: XF Type: UNKNOWN exceed-cleartext-passwords(1547) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |