Mikogo 5.4.1.160608 Local Credentials Disclosure
Posted by deepcore on October 24, 2017 – 4:11 pm
Mikogo version 5.4.1.160608 is vulnerable to local credential disclosure. The supplied password is stored as a MD5 hash format in memory. A potential attacker could reveal the supplied password hash and re-use it or store it via the configuration file in order to gain access to the account.
Post a reply
You must be logged in to post a comment.