CVE-2020-11916

An issue was discovered in Siime Eye 14.1.00000001.3.330.0.0.3.14. The password for the root user is hashed using an old and deprecated hashing technique. Because of this deprecated hashing, the success probability of an attacker in an offline cracking attack is greatly increased.
References
Link Resource
https://seclists.org/fulldisclosure/2024/Jul/14 Mailing List Third Party Advisory Exploit
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:svakom:svakom_siime_eye_firmware:14.1.00000001.3.330.0.0.3.14:*:*:*:*:*:*:*
cpe:2.3:h:svakom:svakom_siime_eye:-:*:*:*:*:*:*:*

History

24 Apr 2025, 13:41

Type Values Removed Values Added
CPE cpe:2.3:h:svakom:svakom_siime_eye:-:*:*:*:*:*:*:*
cpe:2.3:o:svakom:svakom_siime_eye_firmware:14.1.00000001.3.330.0.0.3.14:*:*:*:*:*:*:*
References () https://seclists.org/fulldisclosure/2024/Jul/14 - () https://seclists.org/fulldisclosure/2024/Jul/14 - Mailing List, Third Party Advisory, Exploit
First Time Svakom svakom Siime Eye
Svakom
Svakom svakom Siime Eye Firmware

08 Nov 2024, 19:01

Type Values Removed Values Added
Summary
  • (es) Se descubrió un problema en Siime Eye 14.1.00000001.3.330.0.0.3.14. La contraseña del usuario root se codifica mediante una técnica de codificación antigua y obsoleta. Debido a esta codificación obsoleta, la probabilidad de éxito de un atacante en un ataque de piratería sin conexión aumenta considerablemente.

07 Nov 2024, 21:35

Type Values Removed Values Added
CWE CWE-327
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.3

07 Nov 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-07 18:15

Updated : 2025-04-24 13:41


NVD link : CVE-2020-11916

Mitre link : CVE-2020-11916

CVE.ORG link : CVE-2020-11916


JSON object : View

Products Affected

svakom

  • svakom_siime_eye
  • svakom_siime_eye_firmware
CWE
CWE-327

Use of a Broken or Risky Cryptographic Algorithm