Looking for the vulnerability index of Invicti's legacy products?
Rukovoditel Cleartext Storage of Sensitive Information Vulnerability (CVE-2020-11821) - Vulnerability Database

Rukovoditel Cleartext Storage of Sensitive Information Vulnerability (CVE-2020-11821)

Description

In Rukovoditel 2.5.2, users' passwords and usernames are stored in a cookie with URL encoding, base64 encoding, and hashing. Thus, an attacker can easily apply brute force on them.

References

Related Vulnerabilities