Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2020-24227 — Playground Sessions - Storing User Credentials in Plaintext | Kitploit
Tools/GitHubGitHub/nathunandwani/cve-2020-24227
Password AttacksVulnerability AnalysisData ExfiltrationForensicsInformation Gathering
GitHubnathunandwani/cve-2020-24227

CVE-2020-24227

Playground Sessions - Storing User Credentials in Plaintext

View Repository
9335 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2020-24227

Playground Sessions - Storing User Credentials in Plaintext

Playground Sessions v2.5.582 (and earlier) for Windows, stores the user credentials in plain text allowing anyone with access to C:\Users<USER>\AppData\Roaming\Playground\Local Store#SharedObjects\Playground.swf\UserProfiles.sol to extract the email and password.

Login Page:

alt text

Password:

alt text



Disclosure Timeline:
*August 18, 2020 - Reported to [email protected] - Gave 90 day disclosure timeline - No response *November 21, 2020 - Public Disclosure

Download Tool