Synopsis
The remote Sambar server does not run on top of SSL, therefore passwords are transmitted in cleartext over HTTP.
Description
The remote Sambar server does not run on top of SSL, therefore passwords are transmitted in cleartext over HTTP. An attacker who can sniff network traffic may use this flaw to gain access on the web interface of this host.
Solution
No solution is known at this time.
Plugin Details
Nessus ID: 11585
Vulnerability Information
CPE: cpe:/a:sambar:sambar_server