CVE Vulnerabilities

CVE-2005-3856

Published: Nov 27, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The Popular URL capability (popularurls.cpp) in Krusader 1.60.0 and 1.70.0-beta1 saves passwords in cleartext in the krusaderrc file when the user enters URLs containing passwords in the panel URL field, which might allow attackers to access other sites.

Affected Software

NameVendorStart VersionEnd Version
KrusaderKrusader1.60.0 (including)1.60.0 (including)
KrusaderKrusader1.70.0_beta1 (including)1.70.0_beta1 (including)
KrusaderUbuntudapper*
KrusaderUbuntudevel*
KrusaderUbuntuedgy*
KrusaderUbuntufeisty*
KrusaderUbuntugutsy*

References