{"api_version":"1","generated_at":"2026-07-23T12:24:48+00:00","cve":"CVE-2004-2721","urls":{"html":"https://cve.report/CVE-2004-2721","api":"https://cve.report/api/cve/CVE-2004-2721.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2004-2721","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2004-2721"},"summary":{"title":"CVE-2004-2721","description":"The CheckGroup function in openSkat VTMF before 2.1 generates public key pairs in which the \"p\" variable might not be prime, which allows remote attackers to determine the private key and decrypt messages.","state":"PUBLISHED","assigner":"mitre","published_at":"2004-12-31 05:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["CWE-310","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.3","severity":"","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:N/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://securitytracker.com/id?1012181","name":"http://securitytracker.com/id?1012181","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - OpenSkat VTMF CheckGroup() Randomization Error May Let Remote Users Determine Private Keys","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/11667","name":"http://www.securityfocus.com/bid/11667","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"OpenSkat Weak Encryption Key Generation Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/18049","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/18049","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/11652","name":"http://www.osvdb.org/11652","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://freshmeat.net/projects/openskat/?branch_id=36295&release_id=178549","name":"http://freshmeat.net/projects/openskat/?branch_id=36295&release_id=178549","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"SecureSkat – Freecode","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2004-2721","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2004-2721","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2004","cve_id":"2721","vulnerable":"1","versionEndIncluding":"2.0","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"heiko_stamer","cpe5":"openskat","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-08T01:36:25.216Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"1012181","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1012181"},{"name":"11652","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/11652"},{"name":"11667","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/11667"},{"name":"openskat-vtmf-weak-encryption(18049)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/18049"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://freshmeat.net/projects/openskat/?branch_id=36295&release_id=178549"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2004-11-10T00:00:00.000Z","descriptions":[{"lang":"en","value":"The CheckGroup function in openSkat VTMF before 2.1 generates public key pairs in which the \"p\" variable might not be prime, which allows remote attackers to determine the private key and decrypt messages."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-28T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"1012181","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1012181"},{"name":"11652","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/11652"},{"name":"11667","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/11667"},{"name":"openskat-vtmf-weak-encryption(18049)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/18049"},{"tags":["x_refsource_CONFIRM"],"url":"http://freshmeat.net/projects/openskat/?branch_id=36295&release_id=178549"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2004-2721","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The CheckGroup function in openSkat VTMF before 2.1 generates public key pairs in which the \"p\" variable might not be prime, which allows remote attackers to determine the private key and decrypt messages."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"1012181","refsource":"SECTRACK","url":"http://securitytracker.com/id?1012181"},{"name":"11652","refsource":"OSVDB","url":"http://www.osvdb.org/11652"},{"name":"11667","refsource":"BID","url":"http://www.securityfocus.com/bid/11667"},{"name":"openskat-vtmf-weak-encryption(18049)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/18049"},{"name":"http://freshmeat.net/projects/openskat/?branch_id=36295&release_id=178549","refsource":"CONFIRM","url":"http://freshmeat.net/projects/openskat/?branch_id=36295&release_id=178549"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2004-2721","datePublished":"2007-10-06T21:00:00.000Z","dateReserved":"2007-10-06T00:00:00.000Z","dateUpdated":"2024-08-08T01:36:25.216Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2004-12-31 05:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["CWE-310","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:N/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:heiko_stamer:openskat:*:*:*:*:*:*:*:*","versionEndIncluding":"2.0","matchCriteriaId":"3DA1A0B5-4B35-4953-84B4-A8E315707AEF"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2004","CveId":"2721","Ordinal":"1","Title":"CVE-2004-2721","CVE":"CVE-2004-2721","Year":"2004"},"notes":[{"CveYear":"2004","CveId":"2721","Ordinal":"1","NoteData":"The CheckGroup function in openSkat VTMF before 2.1 generates public key pairs in which the \"p\" variable might not be prime, which allows remote attackers to determine the private key and decrypt messages.","Type":"Description","Title":"CVE-2004-2721"},{"CveYear":"2004","CveId":"2721","Ordinal":"2","NoteData":"2007-10-06","Type":"Other","Title":"Published"},{"CveYear":"2004","CveId":"2721","Ordinal":"3","NoteData":"2017-07-28","Type":"Other","Title":"Modified"}]}}}