Executive Summary

Informations
Name CVE-2004-2555 First vendor Publication 2004-12-31
Vendor Cve Last vendor Modification 2024-11-20

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:L/Au:N/C:P/I:N/A:N)
Cvss Base Score 2.1 Attack Range Local
Cvss Impact Score 2.9 Attack Complexity Low
Cvss Expoit Score 3.9 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

Riverdeep FoolProof Security 3.9.x on Windows 98 and Windows ME uses weak cryptography (arithmetic and XOR operations) to relate the Control password to the Administrator password, which allows local users to calculate the Administrator password if they know the Control password and password recovery key.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-2555

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 3

Open Source Vulnerability Database (OSVDB)

Id Description
6735 FoolProof Security ADMINPW.EXE Encryption Algorithm Weakness

FoolPrint contains a flaw on Windows 98/98SE/Me platform that may lead to an unauthorized password exposure. The issue is due to bitwise XOR operator in the weak ADMINPW.EXE password recovery algorithm. By calculating the known "Control" password and password recovery key, a local attacker can gain access to administrator passwords, which may lead to a loss of confidentiality, integrity and/or availability.

Sources (Detail)

http://archives.neohapsis.com/archives/fulldisclosure/2004-06/0081.html
http://secunia.com/advisories/11790
http://www.osvdb.org/6735
http://www.securityfocus.com/bid/10467
https://exchange.xforce.ibmcloud.com/vulnerabilities/16327
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
Date Informations
2024-11-28 23:22:47
  • Multiple Updates
2024-11-28 12:06:34
  • Multiple Updates
2021-05-04 12:02:39
  • Multiple Updates
2021-04-22 01:02:51
  • Multiple Updates
2020-05-23 00:16:12
  • Multiple Updates
2017-07-11 12:01:45
  • Multiple Updates
2016-06-28 15:12:36
  • Multiple Updates
2016-04-26 13:10:51
  • Multiple Updates
2013-05-11 11:49:23
  • Multiple Updates