CVE-2020-10601: Weak Encryption
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module allow weak hashing algorithm and insecure permissions which may allow a local attacker to bypass the password-protected mechanism through brute-force attacks, cracking techniques, or overwriting the password hash.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-10601?
CVE-2020-10601 is classified as a high-severity vulnerability due to its potential for local attackers to bypass security mechanisms.
How do I fix CVE-2020-10601?
To fix CVE-2020-10601, ensure secure hashing algorithms are implemented and permissions are properly configured to restrict unauthorized access.
Who is affected by CVE-2020-10601?
CVE-2020-10601 affects users of VISAM VBASE Editor version 11.5.0.2 and the VBASE Web-Remote Module.
What kind of attacks can CVE-2020-10601 enable?
CVE-2020-10601 can enable local attackers to perform brute-force attacks, cracking techniques, or overwrite password hashes.
Is there a patch available for CVE-2020-10601?
There is currently no specific patch available for CVE-2020-10601, but implementing secure practices can mitigate the risk.