Impact
The vulnerability resides in the HostKeyServiceImpl.encryptKey method of dromara orion‑visor, where a hard‑coded AES key is used for encryption. An attacker can exploit this weakness to decrypt SSH private keys and host passwords stored by the system, thus compromising the confidentiality of credentials. The flaw corresponds to the CWE‑320 and CWE‑321 classes of cryptographic practice issues.
Affected Systems
All installations of dromara orion‑visor up to version 2.5.7 are affected. The vulnerable component is orion‑visor‑modules/orion‑visor-module-asset/orion‑visor‑module-asset‑service/src/main/java/org/dromara/visor/module/asset/service/impl/HostKeyServiceImpl.java.
Risk and Exploitability
The CVSS score of 6.9 indicates moderate severity. The EPSS score is below 1%, pointing to a very low probability of exploitation, yet the vulnerability is already publicly disclosed and usable. The product has not released a patch at the time of analysis, so the vulnerability remains unmitigated. While the vulnerability is not listed in CISA KEV, that does not diminish the potential impact. Service operators using affected versions should consider that the possibility of credential compromise remains real and should plan remediation promptly.
OpenCVE Enrichment