Unrated severityNVD Advisory· Published May 2, 2005· Updated Apr 16, 2026
CVE-2005-0809
CVE-2005-0809
Description
NotifyLink, when configured for client key retrieval, allows remote attackers to obtain AES keys via a direct request to /hwp/get.asp, then uses a weak encryption scheme (fixed byte reordering) to protect the key, which allows remote attackers to obtain the key via a brute force attack.
Affected products
1- cpe:2.3:a:notify_technology:notifylink:enterprise_server:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.kb.cert.org/vuls/id/581068nvdThird Party AdvisoryUS Government Resource
- secunia.com/advisories/14617nvd
- www.securityfocus.com/bid/12843nvd
News mentions
0No linked articles in our index yet.