← back
CVE-2004-2555

CVE-2004-2555

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 0.8%
from disclosure to weapon0 days
Published on NVDNov 21
1st PoCJun 5
exploitation probability
0.8%top 45% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Riverdeep FoolProof Security 3.9.x on Windows 98 and Windows ME uses weak cryptography (arithmetic and XOR operations) to relate the Control password to the Administrator password, which allows local users to calculate the Administrator password if they know the Control password and password recovery key.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.