|
|
| |
|
| |
vim: information exposure
| Package(s): | vim |
CVE #(s): | CVE-2008-4677
|
| Created: | December 4, 2008 |
Updated: | March 24, 2009 |
| Description: |
The vim editor has an information exposure vulnerability.
From the Mandriva alert:
A vulnerability was found in certain versions of netrw.vim where it
would send FTP credentials stored for an FTP session to subsequent
FTP sessions to servers on different hosts, exposing FTP credentials
to remote hosts (CVE-2008-4677). |
| Alerts: |
|
( Log in to post comments)
|
|
|