CVE-2013-6445: Medium severity redhat Enterprise MRG vulnerability
Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, uses the DES-based crypt function to hash passwords, which makes it easier for attackers to obtain sensitive information via a brute-force attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6445?
CVE-2013-6445 has a moderate severity level due to its use of outdated DES-based password hashing.
How do I fix CVE-2013-6445?
To fix CVE-2013-6445, update to a version of the software that uses a stronger hashing algorithm for passwords.
What impact does CVE-2013-6445 have on my system?
CVE-2013-6445 allows attackers to potentially compromise sensitive information through brute-force attacks on hashed passwords.
Is CVE-2013-6445 present in newer versions of Red Hat Enterprise MRG?
CVE-2013-6445 is specific to Red Hat Enterprise MRG version 2.5 and may not be present in later versions with security improvements.
Who is affected by CVE-2013-6445?
Any organization using Red Hat Enterprise MRG 2.5 is affected by CVE-2013-6445 due to its weak password hashing implementation.