Vulnerability Description
Unknown vulnerability in nCipher Hardware Security Modules (HSM) 1.67.x through 1.99.x allows local users to access secrets stored in the module's run-time memory via certain sequences of commands.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ncipher | Nshield | 1.71.11 |
References
- http://marc.info/?l=bugtraq&m=107755899018249&w=2
- http://www.osvdb.org/4055
- http://www.securityfocus.com/bid/9717Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15281
- http://marc.info/?l=bugtraq&m=107755899018249&w=2
- http://www.osvdb.org/4055
- http://www.securityfocus.com/bid/9717Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15281
FAQ
What is CVE-2004-0320?
CVE-2004-0320 is a vulnerability with a CVSS score of 2.1 (LOW). Unknown vulnerability in nCipher Hardware Security Modules (HSM) 1.67.x through 1.99.x allows local users to access secrets stored in the module's run-time memory via certain sequences of commands.
How severe is CVE-2004-0320?
CVE-2004-0320 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-0320?
Check the references section above for vendor advisories and patch information. Affected products include: Ncipher Nshield.