CVE-2008-2857

Severity CVSS v4.0:
Pending analysis
Type:
CWE-255 Credentials Management
Publication date:
25/06/2008
Last modified:
09/04/2025

Description

AlstraSoft AskMe Pro 2.1 and earlier stores passwords in cleartext in a MySQL database, which allows context-dependent attackers to obtain sensitive information.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:alstrasoft:askme:*:*:pro:*:*:*:*:* 2.1 (including)