CVE-2023-31412

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Aug 24, 2023
Updated: Aug 30, 2023
CWE ID 916

Summary

CVE-2023-31412 refers to a vulnerability in the LMS5xx system. The issue lies in the use of weak hash generation methods, which result in insecure hashes. An attacker who obtains a hash could potentially execute collision attacks, leading to the retrieval of passwords. This vulnerability poses a significant risk to the security of the affected system. Organizations using LMS5xx are strongly advised to update their software or implement stronger hash generation methods to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share