Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 10 Sep 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 05 Sep 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | WWBN AVideo generates passwords for external-login accounts using rand() instead of a cryptographic generator, producing only 31-bit integers. Attackers with access to password hashes can recover plaintext passwords in minutes through offline brute-force attacks due to unsalted MD5-based hashing. | |
| Title | WWBN AVideo Weak PRNG Password Generation via External Login | |
| First Time appeared |
Wwbn
Wwbn avideo |
|
| Weaknesses | CWE-330 | |
| CPEs | cpe:2.3:a:wwbn:avideo:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Wwbn
Wwbn avideo |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-10T15:05:16.101Z
Reserved: 2026-09-05T11:51:31.101Z
Link: CVE-2026-86187
Updated: 2026-09-10T14:19:09.870Z
Status : Deferred
Published: 2026-09-05T13:18:13.703
Modified: 2026-09-10T16:18:01.933
Link: CVE-2026-86187
No data.
OpenCVE Enrichment
Updated: 2026-09-05T13:30:05Z