mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-10 03:37:37 +02:00
780 B
780 B
CVE-2014-3503
Description
Apache Syncope 1.1.x before 1.1.8 uses weak random values to generate passwords, which makes it easier for remote attackers to guess the password via a brute force attack.
POC
Reference
- http://packetstormsecurity.com/files/127375/Apache-Syncope-Insecure-Password-Generation.html
- http://packetstormsecurity.com/files/127375/Apache-Syncope-Insecure-Password-Generation.html
Github
No PoCs found on GitHub currently.