Hardcoded, deafault creds, weak encryption

Hardcoded, deafault creds, weak encryption

5 years ago
Anonymous $Dftgs0JzgE

https://www.bleepingcomputer.com/news/security/flaws-in-a-card-access-control-system-may-allow-hackers-to-bypass-security/

Vulnerabilities discovered in the PremiSys IDentity access system could allow attackers to bypass its building entrance security. The vendor was warned about the flaws but still hasn't released the necessary patches.

Developed by IDenticard Systems as a comprehensive photo ID software, PremiSys ID can be used for designing and printing building access badges, and for managing cardholder data. The mobile app allows identifying employees by scanning their badges.

Hardcoded, deafault creds, weak encryption

Jan 15, 2019, 11:35am UTC
https://www.bleepingcomputer.com/news/security/flaws-in-a-card-access-control-system-may-allow-hackers-to-bypass-security/ > Vulnerabilities discovered in the PremiSys IDentity access system could allow attackers to bypass its building entrance security. The vendor was warned about the flaws but still hasn't released the necessary patches. > Developed by IDenticard Systems as a comprehensive photo ID software, PremiSys ID can be used for designing and printing building access badges, and for managing cardholder data. The mobile app allows identifying employees by scanning their badges.