Use of a weak password encoding algorithm in STER software allows the value of the password to be guessed after analyzing how passwords with known values are encoded.
This issue was fixed in version 9.5.
Metrics
Affected Vendors & Products
References
History
Fri, 22 May 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 22 May 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Centralny Instytut Ochrony Pracy - Państwowy Instytut Badawczy
Centralny Instytut Ochrony Pracy - Państwowy Instytut Badawczy ster |
|
| Vendors & Products |
Centralny Instytut Ochrony Pracy - Państwowy Instytut Badawczy
Centralny Instytut Ochrony Pracy - Państwowy Instytut Badawczy ster |
Fri, 22 May 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use of a weak password encoding algorithm in STER software allows the value of the password to be guessed after analyzing how passwords with known values are encoded. This issue was fixed in version 9.5. | |
| Title | Weak password encoding in STER | |
| Weaknesses | CWE-261 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: CERT-PL
Published: 2026-05-22T09:14:47.530Z
Updated: 2026-05-22T13:44:14.391Z
Reserved: 2026-02-03T13:12:14.139Z
Link: CVE-2026-25607
Updated: 2026-05-22T13:44:10.201Z
Status : Received
Published: 2026-05-22T10:16:17.470
Modified: 2026-05-22T10:16:17.470
Link: CVE-2026-25607
No data.
ReportizFlow