PT-2000-1390 · Omnis · Omnis Studio
Publicado
2000-05-01
·
Atualizado
2008-09-10
·
CVE-2000-0449
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Omnis Studio version 2.4
Description
The issue concerns the use of weak encryption, specifically trivial encoding, for encrypting database fields.
Recommendations
For Omnis Studio version 2.4, consider using an alternative, more secure encryption method to protect database fields until a patch or update is available that addresses this issue. As a temporary workaround, restrict access to sensitive data stored in these fields to minimize the risk of exploitation.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Omnis Studio