René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

96 lines
2.6 KiB
JSON

{
"id": "CVE-2002-2162",
"sourceIdentifier": "cve@mitre.org",
"published": "2002-12-31T05:00:00.000",
"lastModified": "2008-09-05T20:32:29.617",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "Cerulean Studios Trillian 0.73 and earlier use weak encrypttion (XOR) for storing user passwords in .ini files in the Trillian directory, which allows local users to gain access to other user accounts."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:P",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL",
"baseScore": 4.6
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 3.9,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": true,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:cerulean_studios:trillian:0.73:*:*:*:*:*:*:*",
"matchCriteriaId": "E0376EA0-9F02-4987-A0A3-A79DE73512F7"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:cerulean_studios:trillian:0.725:*:*:*:*:*:*:*",
"matchCriteriaId": "6E747537-D974-48C6-8EAA-6B26F3FBDDA3"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:cerulean_studios:trillian:0.6351:*:*:*:*:*:*:*",
"matchCriteriaId": "43DB5092-2D6E-453E-8BBF-0F1766B983D7"
}
]
}
]
}
],
"references": [
{
"url": "http://www.iss.net/security_center/static/10092.php",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/291071",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/5677",
"source": "cve@mitre.org",
"tags": [
"Exploit"
]
}
]
}