CVE-2020-11916

MEDIUM

Siime Eye 14.1.00000001.3.330.0.0.3.14 - Use of a Broken or Risky Cryptographic Algorithm

Title source: llm
STIX 2.1

Description

An issue was discovered in Siime Eye 14.1.00000001.3.330.0.0.3.14. The password for the root user is hashed using an old and deprecated hashing technique. Because of this deprecated hashing, the success probability of an attacker in an offline cracking attack is greatly increased.

References (2)

Core 2
Core References
Exploit, Mailing List, Third Party Advisory mailing-list
https://seclists.org/fulldisclosure/2024/Jul/14

Scores

CVSS v3 6.3
EPSS 0.0047
EPSS Percentile 37.1%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-327
Status published
Products (1)
svakom/svakom_siime_eye_firmware 14.1.00000001.3.330.0.0.3.14
Published Nov 07, 2024
Tracked Since Feb 18, 2026