CVE-2024-23580
Severity CVSS v4.0:
Pending analysis
Type:
CWE-326
Inadequate Encryption Strength
Publication date:
28/05/2024
Last modified:
03/07/2024
Description
HCL DRYiCE Optibot Reset Station is impacted by insecure encryption of One-Time Passwords (OTPs). This could allow an attacker with access to the database to recover some or all encrypted values.
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM



