VYPR
Unrated severityNVD Advisory· Published Oct 3, 2023· Updated Sep 23, 2024

Cryptographic Issues on IBERMATICA RPS

CVE-2023-3350

Description

A Cryptographic Issue vulnerability has been found on IBERMATICA RPS, affecting version 2019. By firstly downloading the log file, an attacker could retrieve the SQL query sent to the application in plaint text. This log file contains the password hashes coded with AES-CBC-128 bits algorithm, which can be decrypted with a .NET function, obtaining the username's password in plain text.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Yealink/RPSllm-fuzzy
    Range: = 2019
  • IBERMATICA/IBERMATICA RPS 2019v5
    Range: RPS 2019

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.