The Blink1Control2 application <= 2.2.7 uses weak password encryption and an insecure method of storage.
The product uses a broken or risky cryptographic algorithm or protocol.
Link | Tags |
---|---|
https://github.com/todbot/Blink1Control2/releases | third party advisory release notes |
https://github.com/p1ckzi/CVE-2022-35513 | third party advisory exploit |
http://packetstormsecurity.com/files/168428/Blink1Control2-2.2.7-Weak-Password-Encryption.html | exploit vdb entry third party advisory |