← Back

CVE-2025-57784

nvd nist
Published: Jan 26, 2026Modified: Feb 18, 2026

JSON object

Loading...
3.3
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 1.8 / Impact: 1.4
Source: NVD

Description

Tomahawk auth timing attack due to usage of `strcmp` has been identified in Hiawatha webserver version 11.7 which allows a local attacker to access the management client.

Affected (1)

Hiawatha
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 11.7

Timeline

No history available yet.