Description
The Blink1Control2 application <= 2.2.7 uses weak password encryption and an insecure method of storage.
Remediation
References
http://packetstormsecurity.com/files/168428/Blink1Control2-2.2.7-Weak-Password-Encryption.html
https://github.com/p1ckzi/CVE-2022-35513
https://github.com/todbot/Blink1Control2/releases
Related Vulnerabilities
CVE-2021-23419 Vulnerability in npm package open-graph
CVE-2023-30529 Vulnerability in maven package org.jenkins-ci.plugins:lucene-search
CVE-2022-29002 Vulnerability in maven package com.xuxueli:xxl-job
CVE-2020-15366 Vulnerability in maven package org.webjars.bower:ajv
CVE-2022-39353 Vulnerability in maven package org.webjars.npm:xmldom