VYPR
Critical severity9.8NVD Advisory· Published Sep 3, 2020· Updated Jun 17, 2026

CVE-2020-25105

CVE-2020-25105

Description

eramba c2.8.1 and Enterprise before e2.19.3 has a weak password recovery token (createHash has only a million possibilities).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Eramba/Eramba3 versions
    cpe:2.3:a:eramba:eramba:2.19.3:*:*:*:enterprise:*:*:*+ 2 more
    • cpe:2.3:a:eramba:eramba:2.19.3:*:*:*:enterprise:*:*:*
    • cpe:2.3:a:eramba:eramba:2.8.1:*:*:*:community:*:*:*
    • (no CPE)range: <=2.19.3
  • eramba/erambadescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.