Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-0794

Опубликовано: 17 июл. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

The rc4encrypt function in lib/moodlelib.php in Moodle 1.9.x before 1.9.16, 2.0.x before 2.0.7, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 uses a hardcoded password of nfgjeingjk, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by reading this script's source code within the open-source software distribution.

РелизСтатусПримечание
devel

not-affected

1.9.9.dfsg2-6
hardy

ignored

end of life
lucid

ignored

end of life
maverick

ignored

end of life
natty

ignored

end of life
oneiric

ignored

end of life
precise

not-affected

1.9.9.dfsg2-6
quantal

not-affected

1.9.9.dfsg2-6
raring

not-affected

1.9.9.dfsg2-6
saucy

not-affected

1.9.9.dfsg2-6

Показывать по

EPSS

Процентиль: 54%
0.00319
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
почти 13 лет назад

The rc4encrypt function in lib/moodlelib.php in Moodle 1.9.x before 1.9.16, 2.0.x before 2.0.7, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 uses a hardcoded password of nfgjeingjk, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by reading this script's source code within the open-source software distribution.

debian
почти 13 лет назад

The rc4encrypt function in lib/moodlelib.php in Moodle 1.9.x before 1. ...

github
около 3 лет назад

The rc4encrypt function in lib/moodlelib.php in Moodle 1.9.x before 1.9.16, 2.0.x before 2.0.7, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 uses a hardcoded password of nfgjeingjk, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by reading this script's source code within the open-source software distribution.

EPSS

Процентиль: 54%
0.00319
Низкий

5 Medium

CVSS2