CVE-2008-2747

No-IP Dynamic Update Client (DUC) 2.2.1 on Windows uses weak permissions for the HKLMSOFTWAREVitalwerksDUC registry key, which allows local users to obtain obfuscated passwords and other sensitive information by reading the (1) TrayPassword, (2) Username, (3) Password, and (4) Hosts registry values.
Configurations

Configuration 1


Information

Published : 2008-06-18 07:41

Updated : 2018-10-11 08:42


NVD link : CVE-2008-2747

Mitre link : CVE-2008-2747

Products Affected
No products.
CWE