Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-597m-g6ch-mrf9

Опубликовано: 30 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.6

Описание

Weak password requirement vulnerability

in Lamassu Bitcoin ATM Douro machines, in its 7.1 version

, which allows a local user to interact with the machine where the application is installed, retrieve stored hashes from the machine and crack long 4-character passwords using a dictionary attack.

Weak password requirement vulnerability

in Lamassu Bitcoin ATM Douro machines, in its 7.1 version

, which allows a local user to interact with the machine where the application is installed, retrieve stored hashes from the machine and crack long 4-character passwords using a dictionary attack.

EPSS

Процентиль: 8%
0.00029
Низкий

5.6 Medium

CVSS3

Дефекты

CWE-521

Связанные уязвимости

CVSS3: 5.6
nvd
около 2 лет назад

Weak password requirement vulnerability in Lamassu Bitcoin ATM Douro machines, in its 7.1 version , which allows a local user to interact with the machine where the application is installed, retrieve stored hashes from the machine and crack long 4-character passwords using a dictionary attack.

EPSS

Процентиль: 8%
0.00029
Низкий

5.6 Medium

CVSS3

Дефекты

CWE-521