High severity7.8NVD Advisory· Published Dec 31, 2005· Updated Apr 16, 2026
CVE-2005-4860
CVE-2005-4860
Description
Spectrum Cash Receipting System before 6.504 uses weak cryptography (static substitution) in the PASSFILE password file, which makes it easier for local users to gain privileges by decrypting a password.
Affected products
1- cpe:2.3:a:spectrumcu:cash_receipting_system:*:*:*:*:*:*:*:*Range: <6.504
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- secunia.com/advisories/13985nvdBroken LinkVendor Advisory
- marc.infonvdMailing List
- www.portcullis.co.uk/uplds/advisories/Portcullis%20Security%20Advisory%2005-002%20Spectrum%20Cash%20Receipting%20System%20Weak%20Password%20Protection%20Vulnerability.txtnvdBroken Link
News mentions
0No linked articles in our index yet.