5
CVSSv2

CVE-2000-1173

Published: 09/01/2001 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the remainder of the information during registration, which could allow malicious users to sniff network traffic and obtain this sensitive information.

Vulnerable Product Search on Vulmon Subscribe to Product

microsys cyberpatrol 4.04.003

microsys cyberpatrol 4.04.005

Exploits

source: wwwsecurityfocuscom/bid/1977/info CyberPatrol is popular web access restriction software by Microsys A vulnerability exists in the way CyberPatrol submits registration information from its client software to Microsys' backend (cybercentralmicrosyscom) that could allow a remote attacker to gather confidential information includ ...