SEPTEMBER 22, 2026
Live Feed
Back to database
Case File

CVE-2006-0591

LOW · CVSS 1.2 EPSS 0.39%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-02-08 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 1.2. See the original NVD description below for full technical details.

CVE
CVE-2006-0591
Severity
LOW
CVSS
1.2
EPSS
0.39%

Original NVD Description

The crypt_gensalt functions for BSDI-style extended DES-based and FreeBSD-sytle MD5-based password hashes in crypt_blowfish 0.4.7 and earlier do not evenly and randomly distribute salts, which makes it easier for attackers to guess passwords from a stolen password file due to the increased number of collisions.