Prima Systems FlexAir, Versions 2.3.38 and prior. The application allows improper authentication using the MD5 hash value of the password, which may allow an attacker with access to the database to login as admin without decrypting the password.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-07-01T18:27:36

Updated: 2024-08-04T20:54:28.425Z

Reserved: 2019-02-09T00:00:00

Link: CVE-2019-7666

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-07-01T19:15:11.477

Modified: 2022-10-25T15:29:19.633

Link: CVE-2019-7666

cve-icon Redhat

No data.