CVE-2014-3503

EPSS 1.9%

Apache Syncope uses a weak PNRG

發布日:2022/5/14修改日:2024/12/8

描述

Apache Syncope 1.1.x before 1.1.8 uses weak random values to generate passwords, which makes it easier for remote attackers to guess the password via a brute force attack.

受影響套件(1)

參考連結(7)