Cleartext Storage of Sensitive Information
CVE-2024-45718
Summary
Sensitive data could be exposed to non- privileged users in a configuration file. Local access to the computer with a low- privileged account is required to access the configuration file containing the sensitive data.
- LOW
- LOCAL
- LOW
- CHANGED
- NONE
- HIGH
- LOW
- NONE
CWE-312 - Cleartext Storage of Sensitive Information
The application stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
References
Advisory Timeline
- Published