CVE-2026-10540

The Control-M/Enterprise Manager uses weak protections for stored hashes of account passwords, potentially allowing offline password recovery attacks if credential data is obtained by an attacker. This vulnerability affects Control-M/Enterprise Manager unsupported versions 9.0.20.x and potentially earlier unsupported versions
Configurations

No configuration.

History

01 Jul 2026, 08:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-01 08:16

Updated : 2026-07-01 19:59


NVD link : CVE-2026-10540

Mitre link : CVE-2026-10540

CVE.ORG link : CVE-2026-10540


JSON object : View

Products Affected

No product.

CWE
CWE-328

Use of Weak Hash