Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-2190

Опубликовано: 07 окт. 2011
Источник: debian
EPSS Низкий

Описание

The generate_admin_password function in Cherokee before 1.2.99 uses time and PID values for seeding of a random number generator, which makes it easier for local users to determine admin passwords via a brute-force attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cherokeefixed1.0.14-1package
cherokeefixed1.0.8-5+squeeze1squeezepackage
cherokeeno-dsalennypackage

Примечания

  • http://code.google.com/p/cherokee/issues/detail?id=1212

EPSS

Процентиль: 25%
0.00086
Низкий

Связанные уязвимости

ubuntu
около 14 лет назад

The generate_admin_password function in Cherokee before 1.2.99 uses time and PID values for seeding of a random number generator, which makes it easier for local users to determine admin passwords via a brute-force attack.

nvd
около 14 лет назад

The generate_admin_password function in Cherokee before 1.2.99 uses time and PID values for seeding of a random number generator, which makes it easier for local users to determine admin passwords via a brute-force attack.

github
больше 3 лет назад

The generate_admin_password function in Cherokee before 1.2.99 uses time and PID values for seeding of a random number generator, which makes it easier for local users to determine admin passwords via a brute-force attack.

EPSS

Процентиль: 25%
0.00086
Низкий