NA

CVE-2020-24227

Published: 23/11/2020 Updated: 23/11/2020

Vulnerability Summary

Playground Sessions v2.5.582 (and previous versions) for Windows, stores the user credentials in plain text allowing anyone with access to UserProfiles.sol to extract the email and password.

Vulnerability Trend

Github Repositories

Playground Sessions - Storing User Credentials in Plaintext

CVE-2020-24227 Playground Sessions - Storing User Credentials in Plaintext Playground Sessions v25582 (and earlier) for Windows, stores the user credentials in plain text allowing anyone with access to C:\Users<USER>\AppData\Roaming\Playground\Local Store#SharedObjects\Playgroundswf\UserProfilessol to extract the email and password