A Improper Authentication vulnerability in cryptctl of SUSE Linux Enterprise Server for SAP 12-SP5, SUSE Manager Server 4.0 allows attackers with access to the hashed password to use it without having to crack it. This issue affects: SUSE Linux Enterprise Server for SAP 12-SP5 cryptctl versions prior to 2.4. SUSE Manager Server 4.0 cryptctl versions prior to 2.4.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: suse

Published: 2021-06-30T08:35:12.084787Z

Updated: 2024-09-16T21:03:41.876Z

Reserved: 2019-11-12T00:00:00

Link: CVE-2019-18906

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-06-30T09:15:07.847

Modified: 2023-04-14T18:48:49.620

Link: CVE-2019-18906

cve-icon Redhat

No data.