Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r8g7-cpmm-qmhp

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Password recovery exploitation vulnerability in the non-certificate-based authentication mechanism in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to crack user passwords via unsalted hashes.

Password recovery exploitation vulnerability in the non-certificate-based authentication mechanism in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to crack user passwords via unsalted hashes.

EPSS

Процентиль: 15%
0.00047
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-916

Связанные уязвимости

CVSS3: 5.6
nvd
больше 7 лет назад

Password recovery exploitation vulnerability in the non-certificate-based authentication mechanism in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to crack user passwords via unsalted hashes.

EPSS

Процентиль: 15%
0.00047
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-916