Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gghc-6wpq-rr46

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

The effective key space used to encrypt the cache in CyberArk Credential Provider prior to 12.1 has low entropy, and under certain conditions a local malicious user can obtain the plaintext of cache files.

The effective key space used to encrypt the cache in CyberArk Credential Provider prior to 12.1 has low entropy, and under certain conditions a local malicious user can obtain the plaintext of cache files.

EPSS

Процентиль: 30%
0.00113
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-326

Связанные уязвимости

CVSS3: 4.4
nvd
больше 4 лет назад

The effective key space used to encrypt the cache in CyberArk Credential Provider prior to 12.1 has low entropy, and under certain conditions a local malicious user can obtain the plaintext of cache files.

EPSS

Процентиль: 30%
0.00113
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-326