6.5

CVE-2025-55053

CWE-328: Use of Weak Hash
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerBaicells
Produkt NOVA430e/430i, NOVA436Q, NEUTRINO430, NOVA846
Default Statusunaffected
Version BaiBLQ_3.0.12 and older versions. BaiBU_DNB4_2.4.9 and older versions
Status affected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.22% 0.128
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
cna@cyber.gov.il 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CWE-328 Use of Weak Hash

The product uses an algorithm that produces a digest (output value) that does not meet security expectations for a hash function that allows an adversary to reasonably determine the original input (preimage attack), find another input that can produce the same hash (2nd preimage attack), or find multiple inputs that evaluate to the same hash (birthday attack).

https://www.gov.il/en/departments/dynamiccollectors/cve_advisories_listing?skip=0