|
314331
|
- |
|
plainblack
|
webgui
|
Multiple eval injection vulnerabilities in PlainBlack Software WebGUI before 6.7.3 allow remote attackers to execute arbitrary Perl code via (1) Help.pm, (2) International.pm, or (3) WebGUI.pm.
|
CWE-94
Code Injection
|
CVE-2005-2837
|
2024-02-15 01:53 |
2005-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314332
|
7.5 |
HIGH
Network
|
vtun_project
|
vtun
|
Electronic Code Book (ECB) mode in VTun 2.0 through 2.5 uses a weak encryption algorithm that produces the same ciphertext from the same plaintext blocks, which could allow remote attackers to gain s…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2002-1697
|
2024-02-15 00:51 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314333
|
5.5 |
MEDIUM
Local
|
mdaemon
|
mdaemon
|
Alt-N Technologies Mdaemon 5.0 through 5.0.6 uses a weak encryption algorithm to store user passwords, which allows local users to crack passwords.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2002-1739
|
2024-02-15 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314334
|
7.5 |
HIGH
Network
|
microsoft
|
sql_server
|
Microsoft SQL Server 6.0 through 2000, with SQL Authentication enabled, uses weak password encryption (XOR), which allows remote attackers to sniff and decrypt the password.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2002-1872
|
2024-02-15 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314335
|
7.5 |
HIGH
Network
|
click-2
|
ingenium_learning_management_system
|
Click2Learn Ingenium Learning Management System 5.1 and 6.1 uses weak encryption for passwords (reversible algorithm), which allows attackers to obtain passwords.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2002-1910
|
2024-02-15 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314336
|
5.5 |
MEDIUM
Local
|
tata
|
integrated_dialer
|
Videsh Sanchar Nigam Limited (VSNL) Integrated Dialer Software 1.2.000, when the "Save Password" option is used, stores the password with a weak encryption scheme (one-to-one mapping) in a registry k…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2002-1946
|
2024-02-15 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314337
|
5.5 |
MEDIUM
Local
|
sharp
|
zaurus_sl-5000d_firmware zaurus_sl-5500_firmware
|
Sharp Zaurus PDA SL-5000D and SL-5500 uses a salt of "A0" to encrypt the screen-locking password as stored in the Security.conf file, which makes it easier for local users to guess the password via b…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2002-1975
|
2024-02-15 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314338
|
- |
|
blender debian
|
blender debian_linux
|
Eval injection vulnerability in bvh_import.py in Blender 2.36 allows attackers to execute arbitrary Python code via a hierarchy element in a .bvh file, which is supplied to an eval function call.
|
CWE-94
Code Injection
|
CVE-2005-3302
|
2024-02-15 00:47 |
2005-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314339
|
- |
|
gggeek debian
|
phpxmlrpc debian_linux
|
Eval injection vulnerability in PHPXMLRPC 1.1.1 and earlier (PEAR XML-RPC for PHP), as used in multiple products including (1) Drupal, (2) phpAdsNew, (3) phpPgAds, and (4) phpgroupware, allows remote…
|
CWE-94
Code Injection
|
CVE-2005-2498
|
2024-02-15 00:47 |
2005-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314340
|
7.5 |
HIGH
Network
|
juvare
|
webeoc
|
WebEOC before 6.0.2 uses a weak encryption scheme for passwords, which makes it easier for attackers to crack passwords.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2005-2281
|
2024-02-15 00:47 |
2005-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|