The LMS5xx uses weak hash generation methods, resulting in the creation of insecure hashs. If an attacker manages to retrieve the hash, it could lead to collision attacks and the potential retrieval of the password.
CVE ID: CVE-2023-31412
CVSS Base Severity: HIGH
CVSS Base Score: 7.5
Vendor: SICK AG
Product: LMS5xx
EPSS Score: 0.14% (probability of being exploited)
EPSS Percentile: 49.9% (scored less or equal to compared to others)
EPSS Date: 2025-02-03 (when was this score calculated)