CVE-2025-26486

Use of a Broken or Risky Cryptographic Algorithm, Use of Password Hash With Insufficient Computational Effort, Use of Weak Hash, Use of a One-Way Hash with a Predictable Salt vulnerability in Beta80 Life 1st allows an Attacker to Bruteforce User Passwords or find a collision to gain access to a target application using BETA80 “Life 1st Identity Manager” as a service for authentication.This issue affects Life 1st: 1.5.2.14234.
Configurations

No configuration.

History

19 Mar 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-19 16:15

Updated : 2025-03-19 16:15


NVD link : CVE-2025-26486

Mitre link : CVE-2025-26486

CVE.ORG link : CVE-2025-26486


JSON object : View

Products Affected

No product.

CWE
CWE-327

Use of a Broken or Risky Cryptographic Algorithm

CWE-328

Reversible One-Way Hash

CWE-760

Use of a One-Way Hash with a Predictable Salt

CWE-916

Use of Password Hash With Insufficient Computational Effort