CVE-2009-2358

Severity CVSS v4.0:
Pending analysis
Type:
CWE-255 Credentials Management
Publication date:
07/07/2009
Last modified:
09/04/2025

Description

TekRADIUS 3.0 uses BUILTIN\Users:R permissions for the TekRADIUS.ini file, which allows local users to obtain obfuscated database credentials by reading this file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:yasinkaplan:tekradius:3.0:*:*:*:*:*:*:*