Vulnerability in the cryptographic algorithm of AndSoft's e-TMS v25.03, which uses MD5 to encrypt passwords. MD5 is a cryptographically vulnerable hash algorithm and is no longer considered secure for storing or transmitting passwords. It is vulnerable to collision attacks and can be easily cracked with modern hardware, exposing user credentials to potential risks.
Metrics
Affected Vendors & Products
References
History
Thu, 02 Oct 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Andsoft
Andsoft e-tms |
|
| CPEs | cpe:2.3:a:andsoft:e-tms:25.03:*:*:*:*:*:*:* | |
| Vendors & Products |
Andsoft
Andsoft e-tms |
|
| Metrics |
cvssV3_1
|
Thu, 02 Oct 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 02 Oct 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the cryptographic algorithm of AndSoft's e-TMS v25.03, which uses MD5 to encrypt passwords. MD5 is a cryptographically vulnerable hash algorithm and is no longer considered secure for storing or transmitting passwords. It is vulnerable to collision attacks and can be easily cracked with modern hardware, exposing user credentials to potential risks. | |
| Title | Multiple vulnerabilities in AndSoft's e-TMS | |
| Weaknesses | CWE-327 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: INCIBE
Published: 2025-10-02T14:18:52.916Z
Updated: 2025-10-02T15:46:49.054Z
Reserved: 2025-09-19T11:43:20.997Z
Link: CVE-2025-59745
Updated: 2025-10-02T15:25:54.291Z
Status : Analyzed
Published: 2025-10-02T15:15:54.130
Modified: 2025-10-02T19:45:31.263
Link: CVE-2025-59745
No data.