Filtered by vendor Aescrypt Project Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2013-7463 1 Aescrypt Project 1 Aescrypt 2017-04-28 N/A
The aescrypt gem 1.0.0 for Ruby does not randomize the CBC IV for use with the AESCrypt.encrypt and AESCrypt.decrypt functions, which allows attackers to defeat cryptographic protection mechanisms via a chosen plaintext attack.