Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-3801

Опубликовано: 24 нояб. 2005
Источник: nvd
CVSS2: 4.6
EPSS Низкий

Описание

CounterPane PasswordSafe 1.x and 2.x allows local users to test possible encryption keys against a subset of the stored key data without performing the more expensive key derivation function (KDF) function, which reduces the search time in brute force attacks.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:counterpane:passwordsafe:1.9.0:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:1.9.1a:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:1.9.2:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:1.9.2-dk_experimental:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:1.9.2a:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:1.9.2b:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:1.9.2b_ppc:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:1.9.2c:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:1.9.2c.1:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:1.9.2c.2:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.0:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.01:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.02:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.03:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.04:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.05:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.06:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.07:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.08:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.09:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.10:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.11:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.12:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.13:*:*:*:*:*:*:*
cpe:2.3:a:counterpane:passwordsafe:2.14:*:*:*:*:*:*:*

EPSS

Процентиль: 11%
0.00037
Низкий

4.6 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

CounterPane PasswordSafe 1.x and 2.x allows local users to test possible encryption keys against a subset of the stored key data without performing the more expensive key derivation function (KDF) function, which reduces the search time in brute force attacks.

EPSS

Процентиль: 11%
0.00037
Низкий

4.6 Medium

CVSS2

Дефекты

NVD-CWE-Other