Vulnerabilities (CVE)

Filtered by vendor Pgp Subscribe
Total 23 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0678 1 Pgp 1 Pgp 2008-09-10 5.0 MEDIUM N/A
PGP 5.5.x through 6.5.3 does not properly check if an Additional Decryption Key (ADK) is stored in the signed portion of a public certificate, which allows an attacker who can modify a victim's public certificate to decrypt any data that has been encrypted with the modified certificate.
CVE-2000-0445 1 Pgp 1 Pgp 2008-09-10 2.1 LOW N/A
The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair generation, which may produce predictable keys.
CVE-2002-1977 1 Pgp 1 Pgp 2008-09-05 2.1 LOW N/A
Network Associates PGP 7.0.4 and 7.1 does not time out according to the value set in the "Passphrase Cache" option, which could allow attackers to open encrypted files without providing a passphrase.