CVE-2025-26486

Broken or Risky Cryptographic Algorithm, Use of Password Hash With Insufficient Computational Effort, Use of Weak Hash, Use of a One-Way Hash with a Predictable Salt vulnerabilities in Beta80 "Life 1st Identity Manager" enable an attacker with access to password hashes to bruteforce user passwords or find a collision to ultimately while attempting to gain access to a target application that uses "Life 1st Identity Manager" as a service for authentication. This issue affects Life 1st: 1.5.2.14234.
Configurations

No configuration.

History

No history.

Information

Published : 2025-03-19 16:15

Updated : 2025-07-02 15:15


NVD link : CVE-2025-26486

Mitre link : CVE-2025-26486

CVE.ORG link : CVE-2025-26486


JSON object : View

Products Affected

No product.

CWE
CWE-327

Use of a Broken or Risky Cryptographic Algorithm

CWE-328

Use of Weak Hash

CWE-760

Use of a One-Way Hash with a Predictable Salt

CWE-916

Use of Password Hash With Insufficient Computational Effort