CVE-2025-3895
Token used for resetting passwords in MegaBIP software are generated using a small space of random values combined with a queryable value. It allows an unauthenticated attacker who know user login names to brute force these tokens and change account passwords (including these belonging to administrators). Version 5.20 of MegaBIP fixes this issue.
Scoring
- Severity
- CRITICAL
- CVSS base score
- 9.1
- CVSS vector
- CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
- EPSS probability
- 0.49%
- CWE
- CWE-334
- Published
- 2025-05-23
- Last modified
- 2026-03-12
Affected products
- Jan Syski MegaBIP
Weakness type
Related vulnerabilities
- CVE-2026-71851 — crypto-js: Insufficient Entropy in Cryptographic Secret Generation via Vulnerable CryptoJS Dependency Chain
- CVE-2024-54017 — A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V11.0), SIPROTEC 5...
- CVE-2024-52616 — Avahi: avahi wide-area dns predictable transaction ids
- CVE-2024-51720 — Vulnerabilities in SecuSUITE Server Components Impact SecuSUITE
- CVE-2024-6890 — Journyx Unauthenticated Password Reset Bruteforce
- CVE-2023-6951 — A Use of Weak Credentials vulnerability affecting the Wi-Fi network generated by a set of DJI...
- CVE-2022-24402 — Intentionally weakened effective strength in TETRA TEA1
- CVE-2023-39979 — MXsecurity Authentication Bypass