ConeXware PowerArchiver CVE-2014-2319 Weak Encryption Security Weakness
BID:66174
Info
ConeXware PowerArchiver CVE-2014-2319 Weak Encryption Security Weakness
| Bugtraq ID: | 66174 |
| Class: | Design Error |
| CVE: |
CVE-2014-2319 |
| Remote: | No |
| Local: | Yes |
| Published: | Mar 13 2014 12:00AM |
| Updated: | Mar 13 2014 12:00AM |
| Credit: | Hanno Böck |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
ConeXware PowerArchiver CVE-2014-2319 Weak Encryption Security Weakness
ConeXware PowerArchiver is prone to a security weakness that may allow attackers to obtain sensitive information.
Successfully exploiting this issue may allow attackers to view encrypted data and obtain sensitive information. This may lead to other attacks.
ConeXware PowerArchiver 14.02.03 is vulnerable.
ConeXware PowerArchiver is prone to a security weakness that may allow attackers to obtain sensitive information.
Successfully exploiting this issue may allow attackers to view encrypted data and obtain sensitive information. This may lead to other attacks.
ConeXware PowerArchiver 14.02.03 is vulnerable.
Exploit / POC
ConeXware PowerArchiver CVE-2014-2319 Weak Encryption Security Weakness
An attacker can use readily available utilities to exploit this issue.
An attacker can use readily available utilities to exploit this issue.
Solution / Fix
ConeXware PowerArchiver CVE-2014-2319 Weak Encryption Security Weakness
Solution:
Updates are available. Please see the references or vendor advisory for more information
Solution:
Updates are available. Please see the references or vendor advisory for more information
References
ConeXware PowerArchiver CVE-2014-2319 Weak Encryption Security Weakness
References:
References:
- PowerArchiver Home Page (ConeXware)