Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fcvh-7h6p-x524

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Lockbox in EMC Documentum D2 before 4.5 uses a hardcoded passphrase when a server lacks a D2.Lockbox file, which makes it easier for remote authenticated users to decrypt admin tickets by locating this passphrase in a decompiled D2 JAR archive.

Lockbox in EMC Documentum D2 before 4.5 uses a hardcoded passphrase when a server lacks a D2.Lockbox file, which makes it easier for remote authenticated users to decrypt admin tickets by locating this passphrase in a decompiled D2 JAR archive.

EPSS

Процентиль: 39%
0.00176
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 10 лет назад

Lockbox in EMC Documentum D2 before 4.5 uses a hardcoded passphrase when a server lacks a D2.Lockbox file, which makes it easier for remote authenticated users to decrypt admin tickets by locating this passphrase in a decompiled D2 JAR archive.

EPSS

Процентиль: 39%
0.00176
Низкий

Дефекты

CWE-200