cve/2011/CVE-2011-1509.md
2024-06-18 02:51:15 +02:00

803 B

CVE-2011-1509

Description

The encryptPassword function in Login.js in ManageEngine ServiceDesk Plus (SDP) 8012 and earlier uses a Caesar cipher for encryption of passwords in cookies, which makes it easier for remote attackers to obtain sensitive information by sniffing the network.

POC

Reference

Github

No PoCs found on GitHub currently.