Lucene search

K
cvelistMitreCVELIST:CVE-2020-28052
HistoryDec 18, 2020 - 12:52 a.m.

CVE-2020-28052

2020-12-1800:52:48
mitre
www.cve.org
7
cve-2020-28052
openbsdbcrypt
password mismatch

AI Score

7.9

Confidence

High

EPSS

0.004

Percentile

74.4%

An issue was discovered in Legion of the Bouncy Castle BC Java 1.65 and 1.66. The OpenBSDBCrypt.checkPassword utility method compared incorrect data when checking the password, allowing incorrect passwords to indicate they were matching with previously hashed ones that were different.

References

AI Score

7.9

Confidence

High

EPSS

0.004

Percentile

74.4%