Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2004-0823

EPSS 0.51% · P66
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2004-0823

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
OpenLDAP 1.0 through 2.1.19, as used in Apple Mac OS 10.3.4 and 10.3.5 and possibly other operating systems, may allow certain authentication schemes to use hashed (crypt) passwords in the userPassword attribute as if they were plaintext passwords, which allows remote attackers to re-use hashed passwords without decrypting them.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
OpenLDAP CRYPT密码验证漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Mac OS X是一款使用在Mac机器上的操作系统,基于BSD系统。 OpenLDAP在进行验证CRYPT密码时存在问题,远程攻击者可以利用这个漏洞使用其他用户的CRYPT值作为密码登录。 OpenLDAP存在一个漏洞,影响Apple's Mac OS X及其他操作系统。攻击者使用目标用户密码的CRYPT值就能以目标用户权限登录。Apple报告CRYPT密码可以明文密码作为userPassword特定。根据报告,部分验证机制可使用CRYPT值作为明文密码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2004-0823

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2004-0823

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-04-14 · 31 CVEs total

CVE-2004-0390SCO OpenServer StartX弱Xhost权限漏洞
CVE-2004-1121Apple Mac OS X多个远程和本地安全漏洞
CVE-2004-1089Apple Mac OS X多个远程和本地安全漏洞
CVE-2004-1088Apple Mac OS X多个远程和本地安全漏洞
CVE-2004-1087Apple Mac OS X多个远程和本地安全漏洞
CVE-2004-1086Apple Mac OS X多个远程和本地安全漏洞
CVE-2004-1085Apple Mac OS X多个远程和本地安全漏洞
CVE-2004-1084Apple Mac OS X多个远程和本地安全漏洞
CVE-2004-1083Apple Mac OS X多个远程和本地安全漏洞
CVE-2004-1081Apple Mac OS X多个远程和本地安全漏洞
CVE-2004-0824Apple PPPDialer不安全记录文件创建符号连接漏洞
CVE-2004-0641Thomson SpeedTouch Home ADSL Modem可预测TCP序列号漏洞
CVE-2004-0637Oracle数据库服务器ctxsys.driload访问验证漏洞
CVE-2004-0534未授权的远程文件名HTML注入漏洞
CVE-2004-0533Business Objects WebIntelligence访问控制绕过文件删除漏洞
CVE-2001-0161Cisco 340-series Aironet WEP加密漏洞
CVE-2004-0369Entrust LibKMP ISAKMP库远程IPSec/ISAKMP缓冲区溢出漏洞
CVE-2003-1005Apple MacOS X ASN.1解码未明远程拒绝服务攻击漏洞
CVE-2003-0954IBM AIX RCP本地缓冲区溢出漏洞
CVE-2003-0900Perl漏洞

Showing top 20 of 31 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2004-0823

No comments yet


Leave a comment