Vulnerabilities > CVE-2023-0452 - Unspecified vulnerability in Econolite EOS
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
Econolite EOS versions prior to 3.2.23 use a weak hash algorithm for encrypting privileged user credentials. A configuration file that is accessible without authentication uses MD5 hashes for encrypting credentials, including those of administrators and technicians.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |