Cherokee Cryptographic Issues Vulnerability - CVE-2011-2190 - Vulnerability Database

Cherokee Cryptographic Issues Vulnerability - CVE-2011-2190

Low
Reference: CVE-2011-2190
Title: Cherokee Cryptographic Issues Vulnerability
Overview:

The generate_admin_password function in Cherokee before 1.2.99 uses time and PID values for seeding of a random number generator which makes it easier for local users to determine admin passwords via a brute-force attack.