Back to Database
Status published
Low
CVE-2002-1977
Network Associates PGP 7.0.4 and 7.1 does not time out...
Vulnerability Description
Network Associates PGP 7.0.4 and 7.1 does not time out according to the value set in the "Passphrase Cache" option, which could allow attackers to open encrypted files without providing a passphrase.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2002-1977
Credits & Attribution
No credits recorded in the NVD database.
References
More from pgp
View All →CVE-2010-3618
PGP Desktop 10.0.x before 10.0.3 SP2 and 10.1.0 before 10.1.0...
Medium
4.3
CVE-2010-3397
Untrusted search path vulnerability in PGP Desktop 9.9.0 Build 397,...
Critical
9.3
CVE-2009-0681
PGP Desktop before 9.10 allows local users to (1) cause...
High
7.2
CVE-2008-5731
The PGPwded device driver (aka PGPwded.sys) in PGP Corporation PGP...
Medium
4.9
CVE-2007-0603
PGP Desktop before 9.5.1 does not validate data objects received...
High
7.1
Affected Vendor
Affected Software
pgp
Vulnerable Versions:
7.0.4, 7.1
Timeline
Official Publish:
June 28th, 2005
Last Modified:
September 16th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.