sensitive data exposure
High
R
Reddit
Submitted None
Actions:
Reported by
saibalaji143_
Vulnerability Details
Technical details and impact analysis
## Summary:
[A Password hash entry was found in /etc/passwd. This is a major vulnerability since /etc/passwd is a world-readable file by default. Once the password hash is found, an attacker may extract the password using a program like crack.]
## Impact:
it is high impact vulnerability .once hacker found password hash it may be leads to develop a program like crack
## Steps To Reproduce:
[https://www.reddit.com/etc%2fpasswd]
1. [add step]
1. [add step]
1. [add step]
## Supporting Material/References:
[list any additional material (e.g. screenshots, logs, etc.)]
* [attachment / reference]
## Impact
A Password hash entry was found in /etc/passwd. This is a major vulnerability since /etc/passwd is a world-readable file by default. Once the password hash is found, an attacker may extract the password using a program like crack.
Report Details
Additional information and metadata
State
Closed
Substate
Not-Applicable
Submitted
Weakness
Insecure Storage of Sensitive Information