CVE-2020-14512: USE OF PASSWORD HASH WITH INSUFFICIENT COMPUTATIONAL EFFORT CWE-916
Published Aug 25, 2020
·Updated
GateManager versions prior to 9.2c, The affected product uses a weak hash type, which may allow an attacker to view user passwords.
Affected Software
3 affected components
Secomea Gatemanager 8250 Firmware<9.2c
Secomea Gatemanager 8250
Secomea All versions prior to 9.2c
Event History
Aug 25, 2020
CVE Published
via MITRE·01:20 PM
Data Sourced
via MITRE·01:20 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2020-14512?
CVE-2020-14512 is a vulnerability in GateManager versions prior to 9.2c that allows an attacker to view user passwords due to the use of a weak hash type.
2
How does CVE-2020-14512 affect Secomea Gatemanager 8250 Firmware?
Secomea Gatemanager 8250 Firmware versions prior to 9.2c are affected by CVE-2020-14512, allowing an attacker to view user passwords.
3
What is the severity of CVE-2020-14512?
CVE-2020-14512 has a severity rating of high with a CVSS score of 7.5.
4
Is Secomea Gatemanager 8250 vulnerable to CVE-2020-14512?
No, Secomea Gatemanager 8250 is not vulnerable to CVE-2020-14512.
5
How can I fix CVE-2020-14512 in GateManager versions prior to 9.2c?
To fix CVE-2020-14512, it is recommended to update GateManager to version 9.2c or later, which resolves the vulnerability.