Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-32127 | Vulnerability in the cryptographic algorithm of AndSoft's e-TMS v25.03, which uses MD5 to encrypt passwords. MD5 is a cryptographically vulnerable hash algorithm and is no longer considered secure for storing or transmitting passwords. It is vulnerable to collision attacks and can be easily cracked with modern hardware, exposing user credentials to potential risks. |
Solution
The vulnerability has been resolved in patches e-TMS VNL 25001 and VNL 25010.
Workaround
No workaround given by the vendor.
Thu, 02 Oct 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Andsoft
Andsoft e-tms |
|
| CPEs | cpe:2.3:a:andsoft:e-tms:25.03:*:*:*:*:*:*:* | |
| Vendors & Products |
Andsoft
Andsoft e-tms |
|
| Metrics |
cvssV3_1
|
Thu, 02 Oct 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 02 Oct 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the cryptographic algorithm of AndSoft's e-TMS v25.03, which uses MD5 to encrypt passwords. MD5 is a cryptographically vulnerable hash algorithm and is no longer considered secure for storing or transmitting passwords. It is vulnerable to collision attacks and can be easily cracked with modern hardware, exposing user credentials to potential risks. | |
| Title | Multiple vulnerabilities in AndSoft's e-TMS | |
| Weaknesses | CWE-327 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-10-02T15:46:49.054Z
Reserved: 2025-09-19T11:43:20.997Z
Link: CVE-2025-59745
Updated: 2025-10-02T15:25:54.291Z
Status : Analyzed
Published: 2025-10-02T15:15:54.130
Modified: 2025-10-02T19:45:31.263
Link: CVE-2025-59745
No data.
OpenCVE Enrichment
No data.
EUVD