CVE-2026-44611
Analyzed
Analyzed - Analysis Complete
Weak Password Hashing in Danelec MacGregor Voyage Data Recorder
Publication date: 2026-05-29
Last updated on: 2026-06-04
Assigner: ICS-CERT
Description
Description
Danelec MacGregor Voyage Data Recorder
passwords are stored with a hashing method which limits password length and is susceptible to brute force attacks.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| macgregor | interschalt_vdr_g4e_firmware | to 5.250 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-916 | The product generates a hash for a password, but it uses a scheme that does not provide a sufficient level of computational effort that would make password cracking attacks infeasible or expensive. |