|
313191
|
7.5 |
HIGH
Network
|
microsoft
|
sql_server
|
Microsoft SQL Server 6.0 through 2000, with SQL Authentication enabled, uses weak password encryption (XOR), which allows remote attackers to sniff and decrypt the password.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2002-1872
|
2024-02-15 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313192
|
7.5 |
HIGH
Network
|
click-2
|
ingenium_learning_management_system
|
Click2Learn Ingenium Learning Management System 5.1 and 6.1 uses weak encryption for passwords (reversible algorithm), which allows attackers to obtain passwords.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2002-1910
|
2024-02-15 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313193
|
5.5 |
MEDIUM
Local
|
tata
|
integrated_dialer
|
Videsh Sanchar Nigam Limited (VSNL) Integrated Dialer Software 1.2.000, when the "Save Password" option is used, stores the password with a weak encryption scheme (one-to-one mapping) in a registry k…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2002-1946
|
2024-02-15 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313194
|
5.5 |
MEDIUM
Local
|
sharp
|
zaurus_sl-5000d_firmware zaurus_sl-5500_firmware
|
Sharp Zaurus PDA SL-5000D and SL-5500 uses a salt of "A0" to encrypt the screen-locking password as stored in the Security.conf file, which makes it easier for local users to guess the password via b…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2002-1975
|
2024-02-15 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313195
|
- |
|
blender debian
|
blender debian_linux
|
Eval injection vulnerability in bvh_import.py in Blender 2.36 allows attackers to execute arbitrary Python code via a hierarchy element in a .bvh file, which is supplied to an eval function call.
|
CWE-94
Code Injection
|
CVE-2005-3302
|
2024-02-15 00:47 |
2005-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313196
|
- |
|
gggeek debian
|
phpxmlrpc debian_linux
|
Eval injection vulnerability in PHPXMLRPC 1.1.1 and earlier (PEAR XML-RPC for PHP), as used in multiple products including (1) Drupal, (2) phpAdsNew, (3) phpPgAds, and (4) phpgroupware, allows remote…
|
CWE-94
Code Injection
|
CVE-2005-2498
|
2024-02-15 00:47 |
2005-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313197
|
7.5 |
HIGH
Network
|
juvare
|
webeoc
|
WebEOC before 6.0.2 uses a weak encryption scheme for passwords, which makes it easier for attackers to crack passwords.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2005-2281
|
2024-02-15 00:47 |
2005-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313198
|
- |
|
php gggeek drupal tiki debian
|
xml_rpc phpxmlrpc drupal tikiwiki_cms\/groupware debian_linux
|
Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2…
|
CWE-94
Code Injection
|
CVE-2005-1921
|
2024-02-15 00:41 |
2005-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313199
|
- |
|
nrl.navy
|
one-time_passwords_in_everything
|
One-Time Passwords In Everything (a.k.a OPIE) 2.32 and 2.4 allows remote attackers to determine the existence of user accounts by printing random passphrases if the user account does not exist and st…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2001-1483
|
2024-02-15 00:17 |
2001-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313200
|
- |
|
amtote
|
homebet
|
AmTote International homebet program returns different error messages when invalid account numbers and PIN codes are provided, which allows remote attackers to determine the existence of valid accoun…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2001-1528
|
2024-02-15 00:17 |
2001-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|