PT-2010-3631 · Microsoft · Dynamics Gp

Chris

·

Published

2010-05-21

·

Updated

2010-05-24

·

CVE-2010-2011

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Microsoft Dynamics GP (affected versions not specified)
Description The issue concerns the encryption method used by Microsoft Dynamics GP. It utilizes a substitution cipher to encrypt certain fields, including the system password field. This encryption method makes it easier for remote authenticated users to obtain sensitive information by decrypting the field's contents.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-2011

Affected Products

Dynamics Gp