Vulnerabilities > Ncipher > Nforce

DATE CVE VULNERABILITY TITLE RISK
2006-03-09 CVE-2006-1117 Unspecified vulnerability in Ncipher products
nCipher firmware before V10, as used by (1) nShield, (2) nForce, (3) netHSM, (4) payShield, (5) SecureDB, (6) DSE200 Document Sealing Engine, (7) Time Source Master Clock (TSMC), and possibly other products, contains certain options that were only intended for testing and not production, which might allow remote attackers to obtain information about encryption keys and crack those keys with less effort than brute force.
network
high complexity
ncipher
2.6
2002-10-04 CVE-2002-0941 Unspecified vulnerability in Ncipher Nforce and Nshield
The ConsoleCallBack class for nCipher running under JRE 1.4.0 and 1.4.0_01, as used by the TrustedCodeTool and possibly other applications, may leak a passphrase when the user aborts an application that is prompting for the passphrase, which could allow attackers to gain privileges.
local
low complexity
ncipher
4.6