swinit in nCipher does not properly disable the Operator Card Set recovery feature even when explicitly disabled by the user, which could allow attackers to gain access to application keys.
References
Link | Resource |
---|---|
http://active.ncipher.com/updates/advisory.txt | Patch Vendor Advisory |
http://archives.neohapsis.com/archives/bugtraq/2000-12/0152.html | Patch Vendor Advisory |
http://www.osvdb.org/4849 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/5999 | |
http://active.ncipher.com/updates/advisory.txt | Patch Vendor Advisory |
http://archives.neohapsis.com/archives/bugtraq/2000-12/0152.html | Patch Vendor Advisory |
http://www.osvdb.org/4849 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/5999 |
Configurations
History
20 Nov 2024, 23:34
Type | Values Removed | Values Added |
---|---|---|
References | () http://active.ncipher.com/updates/advisory.txt - Patch, Vendor Advisory | |
References | () http://archives.neohapsis.com/archives/bugtraq/2000-12/0152.html - Patch, Vendor Advisory | |
References | () http://www.osvdb.org/4849 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/5999 - |
Information
Published : 2001-02-12 05:00
Updated : 2024-11-20 23:34
NVD link : CVE-2001-0081
Mitre link : CVE-2001-0081
CVE.ORG link : CVE-2001-0081
JSON object : View
Products Affected
ncipher
- ncipher
CWE