PublicDateAtUSN: 2006-01-08 PublicDate: 2006-07-25 13:22:00 UTC Candidate: CVE-2006-3816 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3816 Description: Krusader 1.50-beta1 up to 1.70.0 stores passwords for remote connections in cleartext in the bookmark file (krbookmarks.xml), which allows attackers to steal passwords by obtaining the file. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_krusader: ignored (reached end-of-life) edgy_krusader: released (1.70.1-1) feisty_krusader: released (1.70.1-1) gutsy_krusader: released (1.70.1-1) hardy_krusader: released (1.70.1-1) intrepid_krusader: released (1.70.1-1) jaunty_krusader: released (1.70.1-1) karmic_krusader: released (1.70.1-1) devel_krusader: released (1.70.1-1) upstream_krusader: needs-triage