Impact
R‑SOFT DMS uses a non‑salted nested MD5 hash to store superadmin passwords, a weakness identified as CWE‑328. This allows anyone who learns the hash to reverse‑engineer the credential, thereby gaining privileged access. Because the password can only be changed by editing a protected configuration file, an attacker who obtains the hash can maintain long‑term control over the system.
Affected Systems
The vulnerability impacts R‑SOFT SERWIS:DMS; any installation running a version prior to the fixed release v3.17‑2000 is vulnerable. Exact version numbers are not listed in the input, but the issue was patched in v3.17‑2000.
Risk and Exploitability
The CVSS score of 8.2 indicates high severity, while the EPSS score of less than 1% suggests low current exploitation probability. Because no exploits are reported and the vulnerability is not listed in the CISA KEV catalog, it is unlikely to be widely abused at present. The attack vector is inferred to be obtainable hash extraction, possibly via local or remote means if the attacker can read the configuration file.
OpenCVE Enrichment