Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-2120

Опубликовано: 11 фев. 2020
Источник: nvd
CVSS3: 8.4
CVSS2: 2.1
EPSS Низкий

Описание

The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:kde:paste_applet:*:*:*:*:*:*:*:*
Версия до 4.10.5 (исключая)

EPSS

Процентиль: 21%
0.00069
Низкий

8.4 High

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 8.4
ubuntu
почти 6 лет назад

The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.

redhat
больше 12 лет назад

The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.

CVSS3: 8.4
debian
почти 6 лет назад

The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste ...

CVSS3: 8.4
github
почти 4 года назад

The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.

EPSS

Процентиль: 21%
0.00069
Низкий

8.4 High

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-287