CVE

Id
52344  
CVE No.
CVE-2011-4432  
Status
Candidate  
Description
www/include/configuration/nconfigObject/contact/DB-Func.php in Merethis Centreon before 2.3.2 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table approach.  
Phase
Assigned (20111109)  
Votes
None (candidate not yet proposed)  
Comments