Exploitation Summary
EIP tracks 2 public exploits for CVE-2020-12712. PoCs published by Sander Ubink, SanderUbink.
AI-analyzed exploit summary This exploit decrypts stored passwords in SOS JobScheduler by leveraging a weak encryption scheme where the profile name is used as the key. It uses Triple DES (3DES) with ECB mode to recover plaintext passwords from base64-encoded ciphertexts.
Description
A vulnerability based on insecure user/password encryption in the JOE (job editor) component of SOS JobScheduler 1.12 and 1.13 allows attackers to decrypt the user/password that is optionally stored with a user's profile.
Exploits (2)
This exploit decrypts stored passwords in SOS JobScheduler by leveraging a weak encryption scheme where the profile name is used as the key. It uses Triple DES (3DES) with ECB mode to recover plaintext passwords from base64-encoded ciphertexts.
This PoC decrypts passwords stored in SOS JobScheduler (S)FTP configuration files by exploiting weak encryption using the profile name as the key. It uses Triple DES (3DES) with ECB mode and base64 decoding to recover plaintext passwords.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N