VYPR
Vendor

Mikel Olasagasti

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2012-3818Jun 29, 2012
    risk 0.00cvss epss 0.00

    The fpm exporter in Revelation 0.4.13-2 and earlier encrypts the version number but not the password when exporting a file, which might allow local users to obtain sensitive information.

  • CVE-2012-2743Jun 27, 2012
    risk 0.00cvss epss 0.01

    Revelation 0.4.13-2 and earlier does not iterate through SHA hashing algorithms for AES encryption, which makes it easier for context-dependent attackers to guess passwords via a brute force attack.

  • CVE-2012-2742Jun 27, 2012
    risk 0.00cvss epss 0.02

    Revelation 0.4.13-2 and earlier uses only the first 32 characters of a password followed by a sequence of zeros, which reduces the entropy and makes it easier for context-dependent attackers to crack passwords and obtain access to keys via a brute-force attack.