Arkeia Server Static Salt弱密码漏洞

漏洞信息详情

Arkeia Server Static Salt弱密码漏洞

漏洞简介

Knox Arkeia server 4.2版本和可能其他的版本使用crypt()函数加密密码时使用恒定的salt。攻击者更容易进行强力密码猜测。

漏洞公告

Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com .
@securityfocus.com>

参考网址

来源: BID
名称: 3204
链接:http://www.securityfocus.com/bid/3204

来源: BUGTRAQ
名称: 20010817 Arkeia Possible remote root & information leakage
链接:http://archives.neohapsis.com/archives/bugtraq/2001-08/0228.html

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享