CVE Vulnerabilities

CVE-2006-3816

Published: Jul 25, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Krusader 1.50-beta1 up to 1.70.0 stores passwords for remote connections in cleartext in the bookmark file (krbookmarks.xml), which allows attackers to steal passwords by obtaining the file.

Affected Software

NameVendorStart VersionEnd Version
KrusaderKrusader1.50_beta1 (including)1.50_beta1 (including)
KrusaderKrusader1.60.0 (including)1.60.0 (including)
KrusaderKrusader1.70.0 (including)1.70.0 (including)
KrusaderKrusader1.70.0_beta1 (including)1.70.0_beta1 (including)
KrusaderUbuntudapper*
KrusaderUbuntudevel*
KrusaderUbuntuedgy*
KrusaderUbuntufeisty*
KrusaderUbuntugutsy*
KrusaderUbuntuhardy*
KrusaderUbuntuintrepid*
KrusaderUbuntujaunty*
KrusaderUbuntukarmic*

References