Description
The Blink1Control2 application <= 2.2.7 uses weak password encryption and an insecure method of storage.
Remediation
References
https://github.com/todbot/Blink1Control2/releases
https://github.com/p1ckzi/CVE-2022-35513
http://packetstormsecurity.com/files/168428/Blink1Control2-2.2.7-Weak-Password-Encryption.html
Related Vulnerabilities
CVE-2021-4178 Vulnerability in maven package io.fabric8:kubernetes-client
CVE-2020-17480 Vulnerability in npm package tinymce
CVE-2019-9153 Vulnerability in npm package openpgp
CVE-2018-20677 Vulnerability in maven package org.webjars.bowergithub.jasny:bootstrap
CVE-2023-40037 Vulnerability in maven package org.apache.nifi:nifi-dbcp-base