cvedb.io
CVE-2026-65309
HIGH · CVSS 7.5
EPSS exploitation probability: 0%
Published 2026-07-31T08:16:28.330 · Last modified 2026-07-31T08:16:28.330

Summary

ANDRITZ HIPASE-250 (formerly 250 SCALA) in affected versions stores and transmits user passwords using a reversible format instead of a one-way password hash. This allows an attacker able to read the credential store or capture network traffic to recover all stored passwords.

Does this affect you?

Add your gear to cvedb and we'll alert you only when a vendor you run ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.