WellinTech KingView < 6.53 (2012-10-09) User Credentials Not Securely Hashed

Low Nessus Plugin ID 82665


The remote host is affected by a hashing weakness vulnerability.


The remote host is running a version of WellinTech KingView prior to 6.53 (2012-10-09). It is, therefore, affected by a hashing weakness vulnerability due to the use of an insecure hashing algorithm. An attacker can exploit this weakness to trivially decrypt a file containing usernames and passwords.


Upgrade to WellinTech KingView version 6.53 (2012-10-09) or later.

See Also



Plugin Details

Severity: Low

ID: 82665

File Name: scada_kingview_6_53_2012-10-09.nbin

Version: $Revision: 1.22 $

Type: local

Family: SCADA

Published: 2015/04/09

Modified: 2018/01/29

Dependencies: 59374

Risk Information

Risk Factor: Low


Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Information

CPE: cpe:/a:wellintech:kingview

Required KB Items: installed_sw/WellinTech KingView

Patch Publication Date: 2012/10/09

Vulnerability Publication Date: 2012/07/29

Reference Information

CVE: CVE-2012-4899

BID: 54729

OSVDB: 84405

ICSA: 12-283-02