Unrated severityNVD Advisory· Published May 16, 2005· Updated Apr 16, 2026
CVE-2005-1606
CVE-2005-1606
Description
H-Sphere Winbox 2.4.2 and 2.4.3 RC1 stores sensitive information such as username and password in plaintext in world-readable log files, which allows local users to gain privileges.
Affected products
2cpe:2.3:a:positive_software:h-sphere_winbox:2.4.2_patch_4:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:positive_software:h-sphere_winbox:2.4.2_patch_4:*:*:*:*:*:*:*
- cpe:2.3:a:positive_software:h-sphere_winbox:2.4.3_rc1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- secunia.com/advisories/15287nvdPatch
- www.psoft.net/misc/hsphere_winbox_security_update_passwd.htmlnvdPatch
- exploitlabs.com/files/advisories/EXPL-A-2005-007-hsphere.txtnvdExploitPatch
- www.securityfocus.com/bid/13559nvdExploitPatch
- www.osvdb.org/16239nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/20522nvd
News mentions
0No linked articles in our index yet.