Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
AVEVA Edge Use of a Broken or Risky Cryptographic Algorithm
Vulnerability Description
The vulnerability, if exploited, could allow a miscreant with read access to Edge Project files or Edge Offline Cache files to reverse engineer Edge users' app-native or Active Directory passwords through computational brute-forcing of weak hashes.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
Vulnerability Type
使用已被攻破或存在风险的密码学算法
Vulnerability Title
AVEVA Edge 加密问题漏洞
Vulnerability Description
AVEVA Edge是英国剑维软件(AVEVA)公司的一款高度可扩展、灵活的 HMI/SCADA 软件。 AVEVA Edge存在加密问题漏洞,该漏洞源于攻击者可通过计算暴力破解弱哈希值,逆向工程获取Edge用户的应用程序原生密码或Active Directory密码。
CVSS Information
N/A
Vulnerability Type
N/A