CVE-2021-29397

Severity CVSS v4.0:
Pending analysis
Type:
CWE-319 Cleartext Transmission of Sensitive Information
Publication date:
04/02/2022
Last modified:
08/02/2022

Description

Cleartext Transmission of Sensitive Information in /northstar/Admin/login.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote local user to intercept users credentials transmitted in cleartext over HTTP.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:globalnorthstar:northstar_club_management:6.3:*:*:*:*:*:*:*