← Back to CVE List

CVE-2016-10104

Published: 2017-01-23T07:59Z
Last Modified: 2024-11-21T02:43Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Information Disclosure can occur in sshProfiles.jsd in Hitek Software's Automize because of the Read attribute being set for Users. This allows an attacker to recover encrypted passwords for SSH/SFTP profiles. Verified in all 10.x versions up to and including 10.25, and all 11.x versions up to and including 11.14. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt