CVE-2014-3851: Pyplate

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

usr/lib/cgi-bin/create_passwd_file.py in Pyplate 0.08 uses world-readable permissions for passwd.db, which allows local users to obtain the administrator password by reading this file.

Affected products

Published 2014-08-07. Last modified 2026-06-17.