Login with hash: The login routine allows the client to log in to the system not by using the password, but by using the hash of the password. Combined with CVE-2021-23858, this allows an attacker to subsequently login to the system.

Project Subscriptions

Vendors Products
Rexroth Indramotion Mlc L20 Subscribe
Rexroth Indramotion Mlc L20 Firmware Subscribe
Rexroth Indramotion Mlc L25 Subscribe
Rexroth Indramotion Mlc L25 Firmware Subscribe
Rexroth Indramotion Mlc L40 Subscribe
Rexroth Indramotion Mlc L40 Firmware Subscribe
Rexroth Indramotion Mlc L45 Subscribe
Rexroth Indramotion Mlc L45 Firmware Subscribe
Rexroth Indramotion Mlc L65 Subscribe
Rexroth Indramotion Mlc L65 Firmware Subscribe
Rexroth Indramotion Mlc L75 Subscribe
Rexroth Indramotion Mlc L75 Firmware Subscribe
Rexroth Indramotion Mlc L85 Subscribe
Rexroth Indramotion Mlc L85 Firmware Subscribe
Rexroth Indramotion Mlc Xm21 Subscribe
Rexroth Indramotion Mlc Xm21 Firmware Subscribe
Rexroth Indramotion Mlc Xm22 Subscribe
Rexroth Indramotion Mlc Xm22 Firmware Subscribe
Rexroth Indramotion Mlc Xm41 Subscribe
Rexroth Indramotion Mlc Xm41 Firmware Subscribe
Rexroth Indramotion Mlc Xm42 Subscribe
Rexroth Indramotion Mlc Xm42 Firmware Subscribe
Rexroth Indramotion Xlc Subscribe
Rexroth Indramotion Xlc Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-10783 Login with hash: The login routine allows the client to log in to the system not by using the password, but by using the hash of the password. Combined with CVE-2021-23858, this allows an attacker to subsequently login to the system.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: bosch

Published:

Updated: 2024-08-03T19:14:09.701Z

Reserved: 2021-01-12T00:00:00

Link: CVE-2021-23857

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-10-04T18:15:07.797

Modified: 2024-11-21T05:51:57.673

Link: CVE-2021-23857

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses