CVE-2016-6485
The __construct function in Framework/Encryption/Crypt.php in Magento 2 uses the PHP rand function to generate a random
The __construct function in Framework/Encryption/Crypt.php in Magento 2 uses the PHP rand function to generate a random number for the initialization vector, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by guessing the value.
HIGH · CVSS 7.5
EPSS 0.00084
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0