PT-2024-19945 · Hcl · Hcl Dryice Optibot Reset Station

Monica Murray

·

Published

2024-05-28

·

Updated

2024-07-03

·

CVE-2024-23579

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions HCL DRYiCE Optibot Reset Station (affected versions not specified)
Description The issue concerns insecure encryption of security questions in the HCL DRYiCE Optibot Reset Station. This could potentially allow an attacker with access to the database to recover some or all encrypted values.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Inadequate Encryption Strength

Weakness Enumeration

Related Identifiers

CVE-2024-23579

Affected Products

Hcl Dryice Optibot Reset Station