CVE-2005-4860

Severity CVSS v4.0:
Pending analysis
Type:
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
Publication date:
31/12/2005
Last modified:
03/04/2025

Description

Spectrum Cash Receipting System before 6.504 uses weak cryptography (static substitution) in the PASSFILE password file, which makes it easier for local users to gain privileges by decrypting a password.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:spectrumcu:cash_receipting_system:*:*:*:*:*:*:*:* 6.504 (excluding)