A Improper Authentication vulnerability in cryptctl of SUSE Linux Enterprise Server for SAP 12-SP5, SUSE Manager Server 4.0 allows attackers with access to the hashed password to use it without having to crack it. This issue affects: SUSE Linux Enterprise Server for SAP 12-SP5 cryptctl versions prior to 2.4. SUSE Manager Server 4.0 cryptctl versions prior to 2.4.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://bugzilla.suse.com/show_bug.cgi?id=1186226 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: suse
Published: 2021-06-30T08:35:12.084787Z
Updated: 2024-09-16T21:03:41.876Z
Reserved: 2019-11-12T00:00:00
Link: CVE-2019-18906
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-06-30T09:15:07.847
Modified: 2024-11-21T04:33:49.220
Link: CVE-2019-18906
Redhat
No data.