The Blink1Control2 application <= 2.2.7 uses weak password encryption and an insecure method of storage.
References
Link | Resource |
---|---|
https://github.com/todbot/Blink1Control2/releases | Release Notes Third Party Advisory |
https://github.com/p1ckzi/CVE-2022-35513 | Exploit Third Party Advisory |
http://packetstormsecurity.com/files/168428/Blink1Control2-2.2.7-Weak-Password-Encryption.html | Exploit Third Party Advisory VDB Entry |
Configurations
Information
Published : 2022-09-07 07:15
Updated : 2022-09-30 12:16
NVD link : CVE-2022-35513
Mitre link : CVE-2022-35513
JSON object : View
CWE
CWE-326
Inadequate Encryption Strength
Products Affected
blink1
- blink1control2