CVE-2010-2967
05.08.2010, 13:22
The loginDefaultEncrypt algorithm in loginLib in Wind River VxWorks before 6.9 does not properly support a large set of distinct possible passwords, which makes it easier for remote attackers to obtain access via a (1) telnet, (2) rlogin, or (3) FTP session.Enginsight
Vendor | Product | Version |
---|---|---|
windriver | vxworks | 𝑥 ≤ 6.8 |
windriver | vxworks | 5.5 |
windriver | vxworks | 6.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References