Home / os / winnt

QiHang Media Web Digital Signage 3.0.9 Password Disclosure

Posted on 13 August 2020

QiHang Media Web Digital Signage version 3.0.9 suffers from a cleartext transmission/storage of sensitive information in a cookie. This allows a remote attacker to intercept the HTTP Cookie authentication credentials via a man-in-the-middle attack.

 

TOP