7.5
CVSSv3

CVE-2013-7469

Published: 21/02/2019 Updated: 21/02/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Seafile up to and including 6.2.11 always uses the same Initialization Vector (IV) with Cipher Block Chaining (CBC) Mode to encrypt private data, making it easier to conduct chosen-plaintext attacks or dictionary attacks.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

seafile seafile

Vendor Advisories

Debian Bug report logs - #923009 seafile: CVE-2013-7469 Package: src:seafile; Maintainer for src:seafile is Debian Seafile Team <team+seafile@trackerdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 22 Feb 2019 22:48:01 UTC Severity: important Tags: security, upstream Found in version se ...