2.1
CVE-2010-0124
- EPSS 0.37%
- Veröffentlicht 15.03.2010 13:28:25
- Zuletzt bearbeitet 16.06.2026 23:15:31
- Quelle PSIRT-CNA@flexerasoftware.com
- CVE-Watchlists
- Unerledigt
Employee Timeclock Software 0.99 places the database password on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Timeclock-software ≫ Employee Timeclock Software Version0.99
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.37% | 0.283 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:P/I:N/A:N
|
http://secunia.com/advisories/38739
http://secunia.com/secunia_research/2010-12/
http://www.osvdb.org/62830
http://www.securityfocus.com/archive/1/509996/100/0/threaded
http://www.securityfocus.com/bid/38642
https://exchange.xforce.ibmcloud.com/vulnerabilities/56800