CVE-2000-1173 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 1.6% (pctl 75)
Patch early
A public exploit exists.
Description
Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the remainder of the information during registration, which could allow attackers to sniff network traffic and obtain this sensitive information.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
| EPSS | 1.57% — more likely to be exploited than 75% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2001-01-09 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| microsys | cyberpatrol |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsys CyberPatrol 4.0 4.003/4.0 4.005 - Insecure Registration | 2000-11-22 |
References
→ the Explorer · watch your stack · NVD