Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

APBoard Protected Forum Plaintext Password Weakness

When an APBoard user logs into a password protected forum, their plaintext password is included in the forum URL.

A user's forum password could be stolen by posting a link in a protected forum to a referer-logging script.







 

Privacy Statement
Copyright 2009, SecurityFocus