2 results (0.004 seconds)

CVSS: 5.5EPSS: 0%CPEs: 4EXPL: 0

Sharp Zaurus PDA SL-5000D and SL-5500 uses a salt of "A0" to encrypt the screen-locking password as stored in the Security.conf file, which makes it easier for local users to guess the password via brute force methods. • http://online.securityfocus.com/archive/1/281437 http://www.iss.net/security_center/static/9535.php http://www.securityfocus.com/bid/5201 • CWE-326: Inadequate Encryption Strength •

CVSS: 10.0EPSS: 1%CPEs: 2EXPL: 0

The FTP service in Zaurus PDAs SL-5000D and SL-5500 does not require authentication, which allows remote attackers to access the file system as root. • http://online.securityfocus.com/archive/1/281437 http://www.iss.net/security_center/static/9534.php http://www.securityfocus.com/archive/1/281549 http://www.securityfocus.com/archive/1/281652 http://www.securityfocus.com/bid/5200 •