CVE-2008-3147

WeFi 3.2.1.4.1, when diagnostic mode is enabled, stores (1) WEP, (2) WPA, and (3) WPA2 access-point keys in (a) ClientWeFiLog.dat, (b) ClientWeFiLog.bak, and possibly (c) a certain .inf file under %PROGRAMFILES%WeFiUsers, and uses cleartext for the ClientWeFiLog files, which allows local users to obtain sensitive information by reading these files.

Date published : 2008-07-11

http://www.securityfocus.com/bid/30088

http://www.securityfocus.com/archive/1/493946/100/0/threaded