CVE-2023-0452

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/01/2023
Last modified:
20/06/2023

Description

Econolite EOS versions prior to 3.2.23 use a weak hash<br /> algorithm for encrypting privileged user credentials. A configuration file that<br /> is accessible without authentication uses MD5 hashes for encrypting<br /> credentials, including those of administrators and technicians.<br /> <br /> <br /> <br /> <br /> <br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:econolite:eos:*:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools