Security Advisory
CVE-2005-2962
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The post-installation script for ntlmaps before 0.9.9 sets world-readable permissions for the configuration file, which allows local users to obtain the username and password.