CVE-2000-0449

Omnis Studio 2.4 - Weak Encryption for Database Fields

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2000-0449. PoCs published by Eric.Stevens.

AI-analyzed exploit summary The exploit describes a weak encryption scheme in Omnis Studio 2.4, where encrypted bytes can be reversed using a simple mathematical formula based on the byte's position. This is not an executable exploit but a technical explanation of the vulnerability.

Description

Omnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Eric.Stevens · textlocalmultiple
https://www.exploit-db.com/exploits/19967

The exploit describes a weak encryption scheme in Omnis Studio 2.4, where encrypted bytes can be reversed using a simple mathematical formula based on the byte's position. This is not an executable exploit but a technical explanation of the vulnerability.

Classification
Writeup 100%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Theoretical
Target: Omnis Studio 2.4
No auth needed
Prerequisites: Access to encrypted data generated by Omnis Studio 2.4
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/1255
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2000-05/0311.html

Scores

EPSS 0.0215
EPSS Percentile 80.3%

Details

Status published
Products (1)
omnis/studio 2.4
Published May 01, 2000
Tracked Since Feb 18, 2026