Vulnerability Description
SawMill 5.0.21 uses weak encryption to store passwords, which allows attackers to easily decrypt the password and modify the SawMill configuration.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sawmill | Sawmill | 5.0.21 |
Related Weaknesses (CWE)
References
- http://archives.neohapsis.com/archives/bugtraq/2000-06/0271.htmlPatchVendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0080.html
- http://www.securityfocus.com/bid/1403
- http://archives.neohapsis.com/archives/bugtraq/2000-06/0271.htmlPatchVendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0080.html
- http://www.securityfocus.com/bid/1403
FAQ
What is CVE-2000-0589?
CVE-2000-0589 is a vulnerability with a CVSS score of 7.5 (HIGH). SawMill 5.0.21 uses weak encryption to store passwords, which allows attackers to easily decrypt the password and modify the SawMill configuration.
How severe is CVE-2000-0589?
CVE-2000-0589 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2000-0589?
Check the references section above for vendor advisories and patch information. Affected products include: Sawmill Sawmill.