Vulnerabilities
Vulnerable Software
Magento:  >> Magento2  Security Vulnerabilities
The __construct function in Framework/Encryption/Crypt.php in Magento 2 uses the PHP rand function to generate a random number for the initialization vector, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by guessing the value.
CVSS Score
7.5
EPSS Score
0.0
Published
2017-03-01


Contact Us

Shodan ® - All rights reserved