Описание
Conductor.exe in Intrinsic Swimage Encore before 5.0.1.21 contains a hardcoded password, which might allow local users to decrypt certain .bin files. NOTE: it is not clear whether this issue crosses privilege boundaries.
Ссылки
- Third Party AdvisoryUS Government Resource
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 5.x (включая)
cpe:2.3:a:intrinsic:swimage_encore:*:*:*:*:*:*:*:*
EPSS
Процентиль: 65%
0.00501
Низкий
2.1 Low
CVSS2
Дефекты
CWE-255
Связанные уязвимости
github
больше 3 лет назад
Conductor.exe in Intrinsic Swimage Encore before 5.0.1.21 contains a hardcoded password, which might allow local users to decrypt certain .bin files. NOTE: it is not clear whether this issue crosses privilege boundaries.
EPSS
Процентиль: 65%
0.00501
Низкий
2.1 Low
CVSS2
Дефекты
CWE-255