CVE-2005-4145
50Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 44%
from disclosure to weapon1745 days
Published on NVDDec 10
1st PoC+1745d
metasploitDec 8
exploitation probability
44%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
The MSDE version of Lyris ListManager 5.0 through 8.9b configures the sa account in the database to use a password with a small search space ("lyris" and up to 5 digits, possibly from the process ID), which allows remote attackers to gain access via a brute force attack.
Affected products
n/a · n/apublic PoCs found — 1
exploitdbwww.exploit-db.com/exploits/16397unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://archives.neohapsis.com/archives/fulldisclosure/2005-12/0349.htmlhttp://metasploit.com/research/vulns/lyris_listmanager/http://secunia.com/advisories/17943http://www.osvdb.org/21559http://www.securityfocus.com/archive/1/419077/100/0/threadedhttp://www.vupen.com/english/advisories/2005/2820