CVE Vulnerabilities

CVE-2011-4432

Published: Nov 10, 2011 | Modified: Feb 14, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

www/include/configuration/nconfigObject/contact/DB-Func.php in Merethis Centreon before 2.3.2 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table approach.

Affected Software

Name Vendor Start Version End Version
Centreon Merethis * 2.3.1 (including)
Centreon Merethis 1.4 (including) 1.4 (including)
Centreon Merethis 1.4.1 (including) 1.4.1 (including)
Centreon Merethis 1.4.2 (including) 1.4.2 (including)
Centreon Merethis 1.4.2.1 (including) 1.4.2.1 (including)
Centreon Merethis 1.4.2.2 (including) 1.4.2.2 (including)
Centreon Merethis 1.4.2.3 (including) 1.4.2.3 (including)
Centreon Merethis 1.4.2.4 (including) 1.4.2.4 (including)
Centreon Merethis 1.4.2.5 (including) 1.4.2.5 (including)
Centreon Merethis 1.4.2.6 (including) 1.4.2.6 (including)
Centreon Merethis 1.4.2.7 (including) 1.4.2.7 (including)
Centreon Merethis 2.0-b2 (including) 2.0-b2 (including)
Centreon Merethis 2.0-b3 (including) 2.0-b3 (including)
Centreon Merethis 2.0-b4 (including) 2.0-b4 (including)
Centreon Merethis 2.0-b5 (including) 2.0-b5 (including)
Centreon Merethis 2.0-b6 (including) 2.0-b6 (including)
Centreon Merethis 2.0-rc1 (including) 2.0-rc1 (including)
Centreon Merethis 2.0-rc2 (including) 2.0-rc2 (including)
Centreon Merethis 2.0-rc3 (including) 2.0-rc3 (including)
Centreon Merethis 2.0-rc4 (including) 2.0-rc4 (including)
Centreon Merethis 2.0-rc5 (including) 2.0-rc5 (including)
Centreon Merethis 2.0.1 (including) 2.0.1 (including)
Centreon Merethis 2.0.2 (including) 2.0.2 (including)
Centreon Merethis 2.1.0 (including) 2.1.0 (including)
Centreon Merethis 2.1.1 (including) 2.1.1 (including)
Centreon Merethis 2.1.2 (including) 2.1.2 (including)
Centreon Merethis 2.1.3 (including) 2.1.3 (including)
Centreon Merethis 2.1.4 (including) 2.1.4 (including)
Centreon Merethis 2.1.5 (including) 2.1.5 (including)
Centreon Merethis 2.1.6 (including) 2.1.6 (including)
Centreon Merethis 2.1.7 (including) 2.1.7 (including)
Centreon Merethis 2.1.8 (including) 2.1.8 (including)
Centreon Merethis 2.1.9 (including) 2.1.9 (including)
Centreon Merethis 2.1.10 (including) 2.1.10 (including)
Centreon Merethis 2.1.11 (including) 2.1.11 (including)
Centreon Merethis 2.1.12 (including) 2.1.12 (including)
Centreon Merethis 2.1.13 (including) 2.1.13 (including)
Centreon Merethis 2.2 (including) 2.2 (including)
Centreon Merethis 2.2-b1 (including) 2.2-b1 (including)
Centreon Merethis 2.2-rc1 (including) 2.2-rc1 (including)
Centreon Merethis 2.2-rc2 (including) 2.2-rc2 (including)
Centreon Merethis 2.2.1 (including) 2.2.1 (including)
Centreon Merethis 2.2.2 (including) 2.2.2 (including)
Centreon Merethis 2.3.0 (including) 2.3.0 (including)
Centreon Merethis 2.3.0-rc3 (including) 2.3.0-rc3 (including)

References