PT-2022-9257 · Ovarro · Ovarro Tbox

Uri Katz

·

Published

2022-07-28

·

Updated

2023-08-08

·

CVE-2021-22640

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ovarro TBox (affected versions not specified)
Description An attacker can decrypt the Ovarro TBox login password by capturing communication and using brute force attacks.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Restriction of Excessive Authentication Attempts

Insufficiently Protected Credentials

Weakness Enumeration

Related Identifiers

CVE-2021-22640

Affected Products

Ovarro Tbox