Back to CVE List

CVE-2026-65309

HIGH SEVERITY

CVSS Score & Metrics

Base Score
7.5 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Vulnerability Description

ANDRITZ HIPASE-250 (formerly 250 SCALA) in affected versions stores
and transmits user passwords using a reversible format instead of a
one-way password hash. This allows an attacker able to read the
credential store or capture network traffic to recover all stored
passwords.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-257
Source
NVD
Vendor
ANDRITZ
Product
HIPASE-250, 250 SCALA

External References

Discussion (0)

Add Comment

No comments yet. Be the first!