Xpand IT Write-back manager v2.3.1 uses a hardcoded salt in license class configuration which leads to the generation of a hardcoded and predictable symmetric encryption keys for license generation a…
Medium CVSS 6.5
Summary
Xpand IT Write-back manager v2.3.1 uses a hardcoded salt in license class configuration which leads to the generation of a hardcoded and predictable symmetric encryption keys for license generation and validation.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://balwurk.com Not Applicable
- https://balwurk.com/cve-use-of-hard-coded-cryptographic-key/ Third Party Advisory
- https://ghostline.neocities.org/CVE-2023-27169/
- https://writeback4t.com Product
- https://www.xpand-it.com Product
- https://balwurk.com Not Applicable
- https://balwurk.com/cve-use-of-hard-coded-cryptographic-key/ Third Party Advisory
- https://writeback4t.com Product
- https://www.xpand-it.com Product
Timeline
- nvd_ingest NVD