5
CVE-2015-2864
- EPSS 0.65%
- Veröffentlicht 21.09.2015 10:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle cret@cert.org
- CVE-Watchlists
- Unerledigt
Retrospect and Retrospect Client before 10.0.2.119 on Windows, before 12.0.2.116 on OS X, and before 10.0.2.104 on Linux improperly generate password hashes, which makes it easier for remote attackers to bypass authentication and obtain access to backup files by leveraging a collision.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Retrospect ≫ Retrospect Version10.0.2 SwPlatformwindows
Retrospect ≫ Retrospect Version12.0.2 SwPlatformmac
Retrospect ≫ Retrospect Client Version10.0.2 SwPlatformlinux
Retrospect ≫ Retrospect Client Version10.0.2 SwPlatformwindows
Retrospect ≫ Retrospect Client Version12.0.2 SwPlatformmac
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.65% | 0.703 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|