Previous articleBack to news listNext article |
Sponsored links |
Want to become one of our authors and see your work published on ALLSeek.iNFO ? |
| Yak! Chat Default Account Lets Remote Users Access the File System |
|---|
Categorie: Vulnerability Posted: 2003-09-16 by ReCall Views: 398 Source: Click here | Current Rating: Not rated
|
|
| Details |
|---|
Description: A vulnerability was reported in the Yak! chat application. A remote user can access the file system.
It is reported that a remote user can access the application by connecting to TCP port 3535 and logging into the FTP service using a standard username ('Yak') and password ('asd123'). The remote user can thus gain access to the target user's file system.
Impact: A remote user can gain access to the target user's file system.
Solution: No solution was available at the time of this entry.
The author of the report indicates that you can edit the password by using a hexeditor on the application binary. |
| Syndication |
|---|
Permalink Email this
The URI to TrackBack this entry is: http://allseek.info/news/trackback.php?id=433
|
| User comments (post your comments ) |
|---|
Only registerd members can post comments and articles |
|
Previous articleBack to news listNext article |