2.1
CVSSv2

CVE-2000-0275

Published: 10/04/2000 Updated: 10/09/2008
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 220
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with access to the .PDB file to generate valid PT-1 tokens after cracking the PIN.

Vulnerable Product Search on Vulmon Subscribe to Product

cryptocard cryptoadmin 4.1

Exploits

source: wwwsecurityfocuscom/bid/1097/info CRYPTOCard CRYPTOAdmin is a network authentication application for use with the Palm OS platform CRYPTOAdmin generates a pdb file which contains the username, PIN number, serial number, and key in encrypted or plaintext format The PIN number can be retrieved due to the software's usage of a fix ...
source: wwwsecurityfocuscom/bid/1097/info CRYPTOCard CRYPTOAdmin is a network authentication application for use with the Palm OS platform CRYPTOAdmin generates a pdb file which contains the username, PIN number, serial number, and key in encrypted or plaintext format The PIN number can be retrieved due to the software's usage of a fi ...