[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-1518 backup-manager -- programming error

ID: oval:org.mitre.oval:def:7673Date: (C)2009-12-15   (M)2021-09-11
Class: PATCHFamily: unix




Micha Lenk discovered that backup-manager, a command-line backup tool, sends the password as a command line argument when calling a FTP client, which may allow a local attacker to read this password (which provides access to all backed-up files) from the process listing.

Platform:
Debian 4.0
Debian 3.1
Product:
backup-manager
Reference:
DSA-1518
CVE-2007-4656
CVE    1
CVE-2007-4656
CPE    2
cpe:/o:debian:debian_linux:3.1
cpe:/o:debian:debian_linux:4.0

© SecPod Technologies