Описание
Agile FleetCommander and FleetCommander Kiosk before 4.08 use an XOR format for password encryption, which makes it easier for context-dependent attackers to obtain sensitive information by reading a key file and the encrypted strings.
Ссылки
- US Government Resource
- US Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 4.0 (включая)Версия до 4.0 (включая)
Одно из
cpe:2.3:a:agilefleet:fleetcommander:*:*:*:*:*:*:*:*
cpe:2.3:a:agilefleet:fleetcommander_kiosk:*:*:*:*:*:*:*:*
EPSS
Процентиль: 80%
0.01388
Низкий
5 Medium
CVSS2
Дефекты
CWE-310
Связанные уязвимости
github
больше 3 лет назад
Agile FleetCommander and FleetCommander Kiosk before 4.08 use an XOR format for password encryption, which makes it easier for context-dependent attackers to obtain sensitive information by reading a key file and the encrypted strings.
EPSS
Процентиль: 80%
0.01388
Низкий
5 Medium
CVSS2
Дефекты
CWE-310