Vulnerabilities (CVE)
CVE | Vendors | Products | Updated | CVSS |
---|---|---|---|---|
CVE-2019-3908 | 1 Identicard | 1 Premisys Id | 2019-10-09 | 5.0 |
Premisys Identicard version 3.1.190 stores backup files as encrypted zip files. The password to the zip is hard-coded and unchangeable. An attacker with access to these backups can decrypt them and obtain sensitive data. | ||||
CVE-2019-3907 | 1 Identicard | 1 Premisys Id | 2019-10-09 | 5.0 |
Premisys Identicard version 3.1.190 stores user credentials and other sensitive information with a known weak encryption method (MD5 hash of a salt and password). |