vendor:
Greetings
by:
cOndemned
7.5
CVSS
HIGH
Remote Password Retrieve Exploit
N/A
CWE
Product Name: Greetings
Affected Version From: 1
Affected Version To: 1
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2008
FREEze Greetings 1.0 Remote Password Retrieve Exploit
This exploit allows an attacker to retrieve the admin password of the FREEze Greetings 1.0 application. The exploit works by decoding the contents of the pwd.txt file located in the target application's directory. The file contains a base64 encoded string which is then decoded to reveal the admin password.
Mitigation:
The application should be updated to the latest version to prevent exploitation.