Streamsoft Prestiż Password Decoding Vulnerability

Vulnerability

A vulnerability exists in Streamsoft Prestiż software prior to version 18.2.377, allowing for the decoding of passwords stored in the application's database. This issue arises from the use of a custom password encoding algorithm, which can be easily reversed or brute-forced once the encoding method is understood. The algorithm can be deduced by observing the transformation of passwords during the encoding process.

Impact

Exploitation of this vulnerability allows for the unauthorized decoding of user passwords, potentially leading to unauthorized access to user accounts.

Remediation

Users can upgrade to Streamsoft Prestiż version 18.2.377 or later to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
5.2
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.