CVE-2011-4432
10.11.2011, 00:55
www/include/configuration/nconfigObject/contact/DB-Func.php in Merethis Centreon before 2.3.2 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table approach.Enginsight
Vendor | Product | Version |
---|---|---|
merethis | centreon | 𝑥 ≤ 2.3.1 |
merethis | centreon | 1.4 |
merethis | centreon | 1.4.1 |
merethis | centreon | 1.4.2 |
merethis | centreon | 1.4.2.1 |
merethis | centreon | 1.4.2.2 |
merethis | centreon | 1.4.2.3 |
merethis | centreon | 1.4.2.4 |
merethis | centreon | 1.4.2.5 |
merethis | centreon | 1.4.2.6 |
merethis | centreon | 1.4.2.7 |
merethis | centreon | 2.0:b2 |
merethis | centreon | 2.0:b3 |
merethis | centreon | 2.0:b4 |
merethis | centreon | 2.0:b5 |
merethis | centreon | 2.0:b6 |
merethis | centreon | 2.0:rc1 |
merethis | centreon | 2.0:rc2 |
merethis | centreon | 2.0:rc3 |
merethis | centreon | 2.0:rc4 |
merethis | centreon | 2.0:rc5 |
merethis | centreon | 2.0.1 |
merethis | centreon | 2.0.2 |
merethis | centreon | 2.1.0 |
merethis | centreon | 2.1.1 |
merethis | centreon | 2.1.2 |
merethis | centreon | 2.1.3 |
merethis | centreon | 2.1.4 |
merethis | centreon | 2.1.5 |
merethis | centreon | 2.1.6 |
merethis | centreon | 2.1.7 |
merethis | centreon | 2.1.8 |
merethis | centreon | 2.1.9 |
merethis | centreon | 2.1.10 |
merethis | centreon | 2.1.11 |
merethis | centreon | 2.1.12 |
merethis | centreon | 2.1.13 |
merethis | centreon | 2.2 |
merethis | centreon | 2.2:b1 |
merethis | centreon | 2.2:rc1 |
merethis | centreon | 2.2:rc2 |
merethis | centreon | 2.2.1 |
merethis | centreon | 2.2.2 |
merethis | centreon | 2.3.0 |
merethis | centreon | 2.3.0:rc3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration