Total vulnerabilities in the database
The loginDefaultEncrypt algorithm in loginLib in Wind River VxWorks before 6.9 does not properly support a large set of distinct possible passwords, which makes it easier for remote attackers to obtain access via a (1) telnet, (2) rlogin, or (3) FTP session.
Software | From | Fixed in |
---|---|---|
windriver / vxworks | 6 | 6.x |
windriver / vxworks | 5 | 5.x |
windriver / vxworks | 6.4 | 6.4.x |
windriver / vxworks | - | 6.8.x |
windriver / vxworks | 5.5 | 5.5.x |