Security Advisory
CVE-2006-2442
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
kphone 4.2 creates .qt/kphonerc with world-readable permissions, which allows local users to read usernames and SIP passwords.