CVE
- Id
- 2365
- CVE No.
- CVE-2000-0789
- Status
- Candidate
- Description
- WinU 5.x and earlier uses weak encryption to store its configuration password, which allows local users to decrypt the password and gain privileges.
- Phase
- Proposed (20000921)
- Votes
- ACCEPT(1) Williams | MODIFY(2) Baker, Frech | NOOP(3) Christey, Cole, Wall | REVIEWING(1) Levy
- Comments
- Frech> XF:winu-backdoor(5376) | Christey> ADDREF BID:1741 | ADDREF URL:http://www.securityfocus.com/bid/1741 | Baker> Since there are apparently two different methods of weak encryption, perhaps the description should read " ... used weak encryption methods.."