Silicon Labs Simplicity Device Manager NTLMv2 Hash Extraction Vulnerability

Vulnerability

A vulnerability exists in the web interface of Silicon Labs Simplicity Device Manager, which is publicly accessible. This vulnerability allows for the extraction of NTLMv2 hashes, potentially enabling an attacker to crack the user's domain password.

Impact

Exploitation of this vulnerability could lead to unauthorized access to user domain passwords by cracking the extracted NTLMv2 hashes.

Added: Dec 4, 2025, 10:33 PM
Updated: Dec 4, 2025, 10:33 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
7.4
remediation
0.0
relevance
1.3
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.