Описание
A vulnerability has been identified in LOGO! Soft Comfort (All versions < V9). The project password feature in the affected products stores the password as an unsalted SHA-256 hash. This could allow an attacker who has obtained the project file to perform efficient offline dictionary or brute-force attacks against the unsalted hash.
EPSS
Процентиль: 0%
0.00084
Низкий
6.8 Medium
CVSS3
Дефекты
CWE-759
Связанные уязвимости
CVSS3: 6.8
github
27 дней назад
A vulnerability has been identified in LOGO! Soft Comfort (All versions < V9). The project password feature in the affected products stores the password as an unsalted SHA-256 hash. This could allow an attacker who has obtained the project file to perform efficient offline dictionary or brute-force attacks against the unsalted hash.
EPSS
Процентиль: 0%
0.00084
Низкий
6.8 Medium
CVSS3
Дефекты
CWE-759