MindAlign contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered through an unspecified encryption weakness, which will disclose authentication or system information resulting in a loss of confidentiality.
Classification
Location:
Remote / Network Access
Attack Type:
Information Disclosure
Impact:
Loss of Confidentiality
Disclosure:
OSVDB Verified
Solution
Upgrade to version 6.0 or higher, as it has been reported to fix this vulnerability. In addition, Parlano has released a patch for some older versions. Contact Parlano support at support@parlano.com for an upgrade.