Security Advisory

CVE-2016-2379

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-03-29 20:00:00
Last updated 2024-08-05 23:24:49
Assigner certcc
State PUBLISHED

Description

The Mxit protocol uses weak encryption when encrypting user passwords, which might allow attackers to (1) decrypt hashed passwords by leveraging knowledge of client registration codes or (2) gain login access by eavesdropping on login messages and re-using the hashed passwords.