Passwd
by Passwd
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2000-0492 | 0.03 | — | 0.01 | Jun 4, 2000 | PassWD 1.2 uses weak encryption (trivial encoding) to store passwords, which allows an attacker who can read the password file to easliy decrypt the passwords. | |||
| CVE-2004-2396 | 0.00 | — | 0.00 | Dec 31, 2004 | passwd 0.68 does not check the return code for the pam_start function, which has unknown impact and attack vectors that may prevent "safe and proper operation" of PAM. |
- CVE-2000-0492Jun 4, 2000risk 0.03cvss —epss 0.01
PassWD 1.2 uses weak encryption (trivial encoding) to store passwords, which allows an attacker who can read the password file to easliy decrypt the passwords.
- CVE-2004-2396Dec 31, 2004risk 0.00cvss —epss 0.00
passwd 0.68 does not check the return code for the pam_start function, which has unknown impact and attack vectors that may prevent "safe and proper operation" of PAM.