CVE-2022-38659

In specific scenarios, on Windows the operator credentials may be encrypted in a manner that is not completely machine-dependent.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:hcltech:bigfix_platform:*:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:bigfix_platform:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 6.0
References () https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0102049 - Vendor Advisory () https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0102049 - Vendor Advisory
Summary
  • (es) En escenarios específicos, en Windows las credenciales del operador pueden cifrarse de una manera que no dependa completamente de la máquina.

Information

Published : 2022-12-19 11:15

Updated : 2025-04-17 16:15


NVD link : CVE-2022-38659

Mitre link : CVE-2022-38659

CVE.ORG link : CVE-2022-38659


JSON object : View

Products Affected

hcltech

  • bigfix_platform

microsoft

  • windows
CWE
CWE-326

Inadequate Encryption Strength