4.6
CVSSv2

CVE-2000-0625

Published: 18/07/2000 Updated: 10/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

NetZero 3.0 and previous versions uses weak encryption for storing a user's login information, which allows a local user to decrypt the password.

Vulnerable Product Search on Vulmon Subscribe to Product

netzero zeroport

Exploits

source: wwwsecurityfocuscom/bid/1483/info Netzero is a free internet service provider which requires its users to run the application ZeroPort in order to log onto the network The username and password is stored locally in a text file called iddat and is inadequately encrypted The weakly encrypted username and password may also be stor ...