VYPR
Medium severity6.8NVD Advisory· Published Dec 3, 2018· Updated Jun 17, 2026

CVE-2018-19795

CVE-2018-19795

Description

ChipsBank UMPTool saves the password to the NAND with a simple substitution cipher, which allows attackers to get full access when having physical access to the device.

Affected products

2
  • ChipsBank/UMPTool2 versions
    cpe:2.3:a:chipsbank:umptool:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:chipsbank:umptool:*:*:*:*:*:*:*:*
    • (no CPE)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.