Knox Arkeia server 4.2, and possibly other versions, uses a constant salt when encrypting passwords using the crypt() function, which makes it easier for an attacker to conduct brute force password guessing.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Arkeia | Knox_software | 4.2 | 4.2 |
Arkeia | Knox_software | 4.2.8.2 | 4.2.8.2 |