Security Advisory
CVE-2014-3800
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
XBMC 13.0 uses world-readable permissions for .xbmc/userdata/sources.xml, which allows local users to obtain user names and passwords by reading this file.