CVE

Id
7241  
CVE No.
CVE-2003-0414  
Status
Candidate  
Description
The installation of Sun ONE Application Server 7.0 for Windows 2000/XP creates a statefile with world-readable permissions, which allows local users to gain privileges by reading a plaintext password in the statefile.  
Phase
Assigned (20030610)  
Votes
None (candidate not yet proposed)  
Comments