CyberSec.Space Logo
Back to CVE Browser

CVE-2022-25807

MEDIUM
5.5
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2022-06-09
Last Modified2026-06-17
Data SourcesNVD

Vulnerability Description

An issue was discovered in the IGEL Universal Management Suite (UMS) 6.07.100. A hardcoded DES key in the LDAPDesPWEncrypter class allows an attacker, who has discovered encrypted LDAP bind credentials, to decrypt those credentials using a static 8-byte DES key.

Affected Platforms (CPE)

📦
Igel

Universal Management Suite

= 6.07.100

References & Advisories

Related Vulnerabilities