SaTECH BCU, in its firmware version 2.1.3, performs weak password encryption. This allows an attacker with access to the device's system or website to obtain the credentials, as the storage methods used are not strong enough in terms of encryption.
Metrics
Affected Vendors & Products
References
History
Wed, 15 Oct 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Arteche
Arteche satech Bcu Arteche satech Bcu Firmware |
|
| CPEs | cpe:2.3:h:arteche:satech_bcu:-:*:*:*:*:*:*:* cpe:2.3:o:arteche:satech_bcu_firmware:2.1.3:*:*:*:*:*:*:* |
|
| Vendors & Products |
Arteche
Arteche satech Bcu Arteche satech Bcu Firmware |
|
| Metrics |
cvssV3_1
|
Fri, 28 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 28 Mar 2025 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SaTECH BCU, in its firmware version 2.1.3, performs weak password encryption. This allows an attacker with access to the device's system or website to obtain the credentials, as the storage methods used are not strong enough in terms of encryption. | |
| Title | Weak Encoding for Password vulnerability in saTECH BCU | |
| Weaknesses | CWE-261 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: INCIBE
Published: 2025-03-28T13:15:08.022Z
Updated: 2025-03-28T13:34:42.132Z
Reserved: 2025-03-27T10:59:43.270Z
Link: CVE-2025-2862
Updated: 2025-03-28T13:34:38.341Z
Status : Analyzed
Published: 2025-03-28T14:15:21.257
Modified: 2025-10-15T16:50:59.443
Link: CVE-2025-2862
No data.