CVE-2006-6145

CRYPTOCard CRYPTO-Server before 6.4.56 stores LDAP credentials in plaintext in UninstallerDatainstallvariables.properties, which has insecure permissions and allows local users to obtain the credentials. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

Date published : 2006-11-28

http://www.securityfocus.com/bid/21305

http://secunia.com/advisories/22138