ZeroHour

CVE-2019-25061

PoC
CVSS 3.1
7.5 high
EPSS
2%p78
Published
()
Modified
Description

The random_password_generator (aka RandomPasswordGenerator) gem through 1.0.0 for Ruby uses Kernel#rand to generate passwords, which, due to its cyclic nature, can facilitate password prediction.

Vendors
random password generator project
Products
random password generator
Weakness
CWE-335
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.