PT-2026-53166 · Unknown · Simstudioai Sim
CVSS v3.1
3.7
Low
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
SimStudioAI sim versions prior to 0.6.93
Description
An issue exists in the Password Protection Handler component within the
apps/sim/lib/core/security/deployment.ts library. A remote attacker can perform a manipulation that results in the use of a weak hash, which is a cryptographic function that produces a fixed-size output but is susceptible to collisions or reversals. The attack complexity is high and exploitation is considered difficult.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Use of a Broken Cryptographic Algorithm
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Simstudioai Sim