2.1
CVSSv2

CVE-2013-1853

Published: 24/01/2014 Updated: 25/02/2014
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Almanah Diary 0.9.0 and 0.10.0 does not encrypt the database when closed, which allows local users to obtain sensitive information by reading the database.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

almanah project almanah 0.9.0

almanah project almanah 0.10.0

Vendor Advisories

Debian Bug report logs - #702905 almanah: CVE-2013-1853: Almanah doesn't encrypt the database Package: almanah; Maintainer for almanah is Angel Abad <angel@debianorg>; Source for almanah is src:almanah (PTS, buildd, popcon) Reported by: Angel Abad <angel@debianorg> Date: Tue, 12 Mar 2013 19:33:02 UTC Severity: gra ...