EMC Avamar 6.0.x, 6.1.x, and 7.0.x in Avamar Data Store (ADS) GEN4(S) and Avamar Virtual Edition (AVE), when Password Hardening before 2.0.0.4 is enabled, uses UNIX DES crypt for password hashing, which makes it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-10-25 03:55
Updated : 2017-08-28 18:35
NVD link : CVE-2014-4623
Mitre link : CVE-2014-4623
JSON object : View
CWE
CWE-310
Cryptographic Issues
Products Affected
emc
- avamar