The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.
457 vulnerabilities with CWE-326
CVE-2002-1697
HIGH
VTun 2.0-2.5 - Inadequate Encryption Strength via ECB Mode
CVSS 7.5
CVE-2002-1739
MEDIUM
Mdaemon 5.0-5.0.6 - Inadequate Encryption Strength for User Passwords
CVSS 5.5
CVE-2002-1872
HIGH
Microsoft SQL Server 6.0-2000 - Weak Password Encryption via XOR
CVSS 7.5
CVE-2002-1910
HIGH
Click2Learn Ingenium Learning Management System 5.1 and 6.1 - Inadequate Encryption Strength
CVSS 7.5
CVE-2002-1946
MEDIUM
Videsh Sanchar Nigam Limited Integrated Dialer 1.2.000 - Inadequate Encryption Strength in Saved Password
CVSS 5.5
CVE-2002-1975
MEDIUM
Sharp Zaurus SL-5000D and SL-5500 Firmware - Inadequate Encryption Strength in Password Storage
CVSS 5.5
CVE-2001-1546
HIGH
Pathways Homecare 6.5 - Info Disclosure
CVSS 7.8
Details
Vulnerabilities
457