Search Results (662 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2012-4449 1 Apache 1 Hadoop 2024-08-06 N/A
Apache Hadoop before 0.23.4, 1.x before 1.0.4, and 2.x before 2.0.2 generate token passwords using a 20-bit secret when Kerberos security features are enabled, which makes it easier for context-dependent attackers to crack secret keys via a brute-force attack.
CVE-2013-7252 1 Kde 1 Kde Applications 2024-08-06 N/A
kwalletd in KWallet before KDE Applications 14.12.0 uses Blowfish with ECB mode instead of CBC mode when encrypting the password store, which makes it easier for attackers to guess passwords via a codebook attack.