Loading HuntDB...

GHSA-8mj3-mj87-cf2h

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details


Networker 19.9 and all prior versions contains a Plain-text Password stored in temporary config file during backup duration in NMDA MySQL Database backups. User has low privilege access to Networker Client system could potentially exploit this vulnerability, leading to the disclosure of configured MySQL Database user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application Database with privileges of the compromised account.

Related CVEs

Key Information

GHSA ID
GHSA-8mj3-mj87-cf2h
Published
January 25, 2024 3:31 PM
Last Modified
January 25, 2024 3:31 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 14, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.