www/include/configuration/nconfigObject/contact/DB-Func.php in Merethis Centreon before 2.3.2 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table approach.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2011-11-10T00:00:00

Updated: 2024-08-07T00:09:18.344Z

Reserved: 2011-11-09T00:00:00

Link: CVE-2011-4432

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2011-11-10T00:55:00.930

Modified: 2012-02-14T04:09:58.070

Link: CVE-2011-4432

cve-icon Redhat

No data.