PT-2024-20750 · Appsamvid · Appsamvid

Avinash Kumar

+1

·

Published

2024-03-06

·

Updated

2024-09-23

·

CVE-2024-25102

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AppSamvid (affected versions not specified)
Description The issue is related to the use of a weaker cryptographic algorithm, specifically SHA1, in the user login component. An attacker with local administrative privileges could exploit this to obtain the password of AppSamvid on the targeted system. Successful exploitation could allow the attacker to take complete control of the application on the targeted system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Inadequate Encryption Strength

Weakness Enumeration

Related Identifiers

CVE-2024-25102

Affected Products

Appsamvid