Vulnerabilities > Ncipher > Mscapi CSP > 5.50

DATE CVE VULNERABILITY TITLE RISK
2006-03-09 CVE-2006-1115 Unspecified vulnerability in Ncipher Chil, Mscapi CSP and Ncipher Software CD
nCipher HSM before 2.22.6, when generating a Diffie-Hellman public/private key pair without any specified DiscreteLogGroup parameters, chooses random parameters that could allow an attacker to crack the private key in significantly less time than a brute force attack.
network
high complexity
ncipher
2.6
2002-10-04 CVE-2002-0940 Unspecified vulnerability in Ncipher Mscapi CSP 5.50/5.54
domesticinstall.exe for nCipher MSCAPI CSP 5.50 and 5.54 does not use Operator Card Set protected keys when the user requests them but does not generate the Operator Card Set, which results in a lower protection level than specified by the user (module protection only).
local
low complexity
ncipher
4.6
2002-10-04 CVE-2002-0939 Unspecified vulnerability in Ncipher Mscapi CSP 5.50/5.54
The Install Wizard for nCipher MSCAPI CSP 5.50 does not use Operator Card Set protected keys when the user requests them but does not generate the Operator Card Set, which results in a lower protection level than specified by the user (module protection only).
local
low complexity
ncipher
4.6