Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
NewsReactor 1.0 uses a weak encryption scheme, which could allow local users to decrypt the passwords and gain access to other users' newsgroup accounts.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DaanSystems NewsReactor口令编码漏洞
Vulnerability Description
NewsReactor是一个由DaanSystems公司分布的新闻组阅读共享软件,运行于Windows平台下。 NewsReactor在储存用户口令资料时存在漏洞,可以使本地攻击者很容易地得到其他用户的新闻组口令。 配置完NewsReactor后,程序会把配置信息写入到NewsReactor.ini文件。在存放口令信息时NewsReactor使用了一种极其简单的移位编码方式,也就是把每个明文口令字节用它ASCII减去64的字节代替。这使攻击者只要能读取配置文件就能轻易得到其他用户的新闻组口令。
CVSS Information
N/A
Vulnerability Type
N/A