Predictable Salt Vulnerability in Modicon M221 Product by Schneider Electric
CVE-2020-28214
5.5MEDIUM
What is CVE-2020-28214?
A vulnerability has been identified in the Modicon M221 product by Schneider Electric, stemming from the use of a predictable salt in its one-way hash implementation. This weakness facilitates attackers in pre-computing hash values through dictionary attack methods, such as rainbow tables. As a result, the effectiveness of the hash’s unpredictability is compromised, making the system susceptible to unauthorized access and data breaches.
Affected Version(s)
Modicon M221 (all references, all ) Modicon M221 (all references, all versions)