Vulnerabilities > CVE-2000-1008 - Unspecified vulnerability in Palm OS

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
palm
exploit available

Summary

PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to the Palm device to decrypt the password and gain access to the device.

Vulnerable Configurations

Part Description Count
OS
Palm
1

Exploit-Db

descriptionPalm OS 3.5.2 Weak Encryption Vulnerability. CVE-2000-1008. Local exploit for palm_os platform
idEDB-ID:20241
last seen2016-02-02
modified2000-09-26
published2000-09-26
reporter@stake
sourcehttps://www.exploit-db.com/download/20241/
titlePalm OS 3.5.2 Weak Encryption Vulnerability