CVE-2020-28052 | Bouncy Castle Legion of the Bouncy Castle 1.65/1.66 Utility Method OpenBSDBCrypt.checkPassword comparison (Nessus ID 211909)
A vulnerability classified as critical has been found in Bouncy Castle Legion of the Bouncy Castle 1.65/1.66. Affected is the function OpenBSDBCrypt.checkPassword of the component Utility Method Handler. The manipulation leads to incorrect comparison.
This vulnerability is traded as CVE-2020-28052. The attack needs to be done within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.