The Anubis (aka Anubis+Ripe160) plugin prior to 1.3 for encrypt stores the unencrypted file's size in cleartext in the header of the encrypted file, which allows malicious users to distinguish between encrypted data and random padding at the end of the encrypted file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
albinoloverats anubis plugin |