Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vvhf-h24r-wq3w

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

NetWin Authentication module (NWAuth) 2.0 and 3.0b, as implemented in SurgeFTP, DMail, and possibly other packages, uses weak password hashing, which could allow local users to decrypt passwords or use a different password that has the same hash value as the correct password.

NetWin Authentication module (NWAuth) 2.0 and 3.0b, as implemented in SurgeFTP, DMail, and possibly other packages, uses weak password hashing, which could allow local users to decrypt passwords or use a different password that has the same hash value as the correct password.

EPSS

Процентиль: 36%
0.00146
Низкий

Связанные уязвимости

nvd
около 24 лет назад

NetWin Authentication module (NWAuth) 2.0 and 3.0b, as implemented in SurgeFTP, DMail, and possibly other packages, uses weak password hashing, which could allow local users to decrypt passwords or use a different password that has the same hash value as the correct password.

EPSS

Процентиль: 36%
0.00146
Низкий