Vulnerabilities > CVE-2007-6340 - Credentials Management vulnerability in Moernaut Lsrunase and Supercrypt

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN

Summary

Geert Moernaut LSrunasE 1.0 and Supercrypt 1.0 use the RC4 stream cipher without constructing a unique initialization vector (IV), which makes it easier for local users to obtain cleartext passwords.

Vulnerable Configurations

Part Description Count
Application
Moernaut
2

Common Weakness Enumeration (CWE)