5.5
CVSSv3

CVE-2022-25012

Published: 01/03/2022 Updated: 09/03/2022
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 188
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Argus Surveillance DVR v4.0 employs weak password encryption.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

argussurveillance dvr 4.0.0.0

Github Repositories

Updated version of this weak password encryption script

Argus Surveillance DVR 40 - Weak Password Encryption CVE-2022-25012 Updated version of this weak password encryption script Exploit DB REF: wwwexploit-dbcom/exploits/50130 Author REF: deathflash1411githubio/blog/dvr4-hash-crack NIST REF: nvdnistgov/vuln/detail/CVE-2022-25012 Description: The author had stated that they didnt make additional entrie

Weak Password Encryption in Argus Surveillance DVR 4.0

CVE-2022-25012 Description: Weak Password Encryption in Argus Surveillance DVR 40 Vulnerable App: Download Exploit-DB: wwwexploit-dbcom/exploits/50130 Proof Of Concept: C:\ProgramData\PY_Software\Argus Surveillance DVR\DVRParamsini contains the password hash characters = { 'ECB4':'1','B4A1':'2','F539':'3',&