Total
4 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2003-1392 | 2 Microsoft, Research Triangle Software | 2 All Windows, Cryptobuddy | 2024-11-20 | 6.6 MEDIUM | N/A |
CryptoBuddy 1.0 and 1.2 does not use the user-supplied passphrase to encrypt data, which could allow local users to use their own passphrase to decrypt the data. | |||||
CVE-2003-1391 | 1 Research Triangle Software | 1 Cryptobuddy | 2024-11-20 | 7.5 HIGH | N/A |
RTS CryptoBuddy 1.0 and 1.2 uses a weak encryption algorithm for the passphrase and generates predictable keys, which makes it easier for attackers to guess the passphrase. | |||||
CVE-2003-1390 | 1 Research Triangle Software | 1 Cryptobuddy | 2024-11-20 | 7.5 HIGH | N/A |
RTS CryptoBuddy 1.2 and earlier stores bytes 53 through 55 of a 55-byte passphrase in plaintext, which makes it easier for local users to guess the passphrase. | |||||
CVE-2003-1389 | 1 Research Triangle Software | 1 Cryptobuddy | 2024-11-20 | 7.5 HIGH | N/A |
RTS CryptoBuddy 1.2 and earlier truncates long passphrases without warning the user, which may make it easier to conduct certain brute force guessing attacks. |