Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-3503

Apache Syncope 1.1.x before 1.1.8 uses weak random values to generate passwords, which makes it easier for remote attackers to guess the password via a brute force attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.019
EPSS Ranking 82.4%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2014-3503
  • Apache » Syncope » Version: 1.1.0
    cpe:2.3:a:apache:syncope:1.1.0
  • Apache » Syncope » Version: 1.1.1
    cpe:2.3:a:apache:syncope:1.1.1
  • Apache » Syncope » Version: 1.1.2
    cpe:2.3:a:apache:syncope:1.1.2
  • Apache » Syncope » Version: 1.1.3
    cpe:2.3:a:apache:syncope:1.1.3
  • Apache » Syncope » Version: 1.1.4
    cpe:2.3:a:apache:syncope:1.1.4
  • Apache » Syncope » Version: 1.1.5
    cpe:2.3:a:apache:syncope:1.1.5
  • Apache » Syncope » Version: 1.1.6
    cpe:2.3:a:apache:syncope:1.1.6
  • Apache » Syncope » Version: 1.1.7
    cpe:2.3:a:apache:syncope:1.1.7


Contact Us

Shodan ® - All rights reserved