Employee Timeclock Software 0.99 places the database password on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Employee_timeclock_software |
Timeclock-software |
0.99 |
0.99 |
References