← All CVEs

CVE-2012-1923

low · 2.1

RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x store passwords in cleartext under adm_b_db\users\, which allows local users to obtain sensitive information by reading a database.

2.1
CVSS
38.3%
EPSS (exploit prob.)
98th
EPSS percentile
2012-04-17
Published

AV:L/AC:L/Au:N/C:P/I:N/A:N

Weaknesses

CWE-310

Affected products

VendorProductAffected versions
realnetworkshelix_server14.0.0
realnetworkshelix_server14.0.1
realnetworkshelix_server14.2
realnetworkshelix_server14.2.0.212
realnetworkshelix_mobile_server14.0.0
realnetworkshelix_mobile_server14.0.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2012-1923