CVE-2005-4412

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/12/2005
Last modified:
05/09/2008

Description

Citrix Program Neighborhood client before 9.150 caches the user password in plaintext in the GUI while asterisks are used to visually obfuscate the password, which allows attackers with access to the session to obtain the password by using a tool to directly access the field.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:citrix:program_neighborhood_client:*:*:*:*:*:*:*:* 9.1 (including)