CVE Published: 16/12/2016 |
CVE Updated: 06/08/2024 |
CVE Year: 2013 Source: debian |
Vendor: n/a |
Product: xrdp before 0.9.1 Status : PUBLISHED
CVE-2013-1430 Description
An issue was discovered in xrdp before 0.9.1. When successfully logging in using RDP into an xrdp session, the file ~/.vnc/sesman_${username}_passwd is created. Its content is the equivalent of the user\'s cleartext password, DES encrypted with a known key.