CVE-2001-0967

Severity CVSS v4.0:
Pending analysis
Type:
CWE-916 Use of Password Hash With Insufficient Computational Effort
Publication date:
31/08/2001
Last modified:
14/02/2024

Description

Knox Arkeia server 4.2, and possibly other versions, uses a constant salt when encrypting passwords using the crypt() function, which makes it easier for an attacker to conduct brute force password guessing.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:arkeia:arkeia:4.2:*:*:*:*:*:*:*
cpe:2.3:a:arkeia:arkeia:4.2.8-2:*:*:*:*:*:*:*