Vulnerabilities
Vulnerable Software
Aescrypt Project:  Security Vulnerabilities
The aescrypt gem 1.0.0 for Ruby does not randomize the CBC IV for use with the AESCrypt.encrypt and AESCrypt.decrypt functions, which allows attackers to defeat cryptographic protection mechanisms via a chosen plaintext attack.
CVSS Score
7.5
EPSS Score
0.003
Published
2017-04-19


Contact Us

Shodan ® - All rights reserved