← Back

CVE-2022-25577

nvd nist
Published: Mar 25, 2022Modified: Jun 17, 2026

JSON object

Loading...
9.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Exploitability: 3.9 / Impact: 5.2
Source: NVD

Description

ALF-BanCO v8.2.5 and below was discovered to use a hardcoded password to encrypt the SQLite database containing the user's data. Attackers who are able to gain remote or local access to the system are able to read and modify the data.

Affected (1)

Products: Alf Banco: Alf Banco
1 product
Alf Banco
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 8.2.3 to 8.2.5

Timeline

No history available yet.