Back to search
CVE-2011-0009
Published: Jan 25, 2011
Modified: Aug 6, 2024
PUBLISHED
Description
Best Practical Solutions RT 3.x before 3.8.9rc2 and 4.x before 4.0.0rc4 uses the MD5 algorithm for password hashes, which makes it easier for context-dependent attackers to determine cleartext passwords via a brute-force attack on the database.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
DSA-2150
vendor-advisory
x_refsource_DEBIAN
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=610850
x_refsource_CONFIRM
ADV-2011-0576
vdb-entry
x_refsource_VUPEN
https://bugzilla.redhat.com/show_bug.cgi?id=672250
x_refsource_CONFIRM
43438
third-party-advisory
x_refsource_SECUNIA
FEDORA-2011-1677
vendor-advisory
x_refsource_FEDORA
[rt-announce] 20110119 Security vulnerability in RT 3.0 and up
mailing-list
x_refsource_MLIST
70661
vdb-entry
x_refsource_OSVDB
ADV-2011-0190
vdb-entry
x_refsource_VUPEN
ADV-2011-0475
vdb-entry
x_refsource_VUPEN
45959
vdb-entry
x_refsource_BID
[mina-dev] 20210225 [jira] [Created] (FTPSERVER-500) Security vulnerability in common/lib/log4j-1.2.17.jar
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now