Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2020-35992: GitHub - micahvandeusen/PrologueDecrypt

Fiserv Prologue through 2020-12-16 does not properly protect the database password. If an attacker were to gain access to the configuration file (specifically, the LogPassword attribute within appconfig.ini), they would be able to decrypt the password stored within the configuration file. This would yield cleartext credentials for the database (to gain access to financial records of customers stored within the database), and in some cases would allow remote login to the database.

CVE
#git#perl

PrologueDecrypt (CVE-2020-35992)****Description

Fiserv Prologue uses a static encryption key across all installations. PrologueDecrypt is an offensive security C# tool designed to decrypt the passwords located in Prologue config files.

Setup

  1. Download PrologueDecrypt

  2. Register the required crypto COM library as an admin user regsvr32 IPSCrypto.dll

  3. Open up PrologueDecrypt.sln in Visual Studio (was tested using Visual Studio 2019) and build.

  4. Run PrologueDecrypt.exe passing the encrypted string without the @ symbol at the start of the string.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907