CVE-2013-6445
published 2014-04-30CVE-2013-6445: Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, uses the DES-based crypt function to hash passwords, which makes it easier for…
PriorityP420medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
1.15%
63.5th percentile
Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, uses the DES-based crypt function to hash passwords, which makes it easier for attackers to obtain sensitive information via a brute-force attack.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | enterprise_mrg | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
cumin: weak password hashing
vendor_redhat·2014-04-28·CVSS 5.0
CVE-2013-6445 [MEDIUM] cumin: weak password hashing
cumin: weak password hashing
Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, uses the DES-based crypt function to hash passwords, which makes it easier for attackers to obtain sensitive information via a brute-force attack.
GHSA
GHSA-8v63-g483-vrxj: Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2
ghsa_unreviewed·2022-05-13
CVE-2013-6445 [MEDIUM] GHSA-8v63-g483-vrxj: Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2
Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, uses the DES-based crypt function to hash passwords, which makes it easier for attackers to obtain sensitive information via a brute-force attack.
No detection rules found.
No public exploits indexed.
2014-04-30
Published