Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xmw2-2pgj-jq4h

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cogent DataHub before 7.3.5 does not use a salt during password hashing, which makes it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack.

Cogent DataHub before 7.3.5 does not use a salt during password hashing, which makes it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack.

EPSS

Процентиль: 29%
0.00104
Низкий

Дефекты

CWE-916

Связанные уязвимости

nvd
больше 11 лет назад

Cogent DataHub before 7.3.5 does not use a salt during password hashing, which makes it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack.

EPSS

Процентиль: 29%
0.00104
Низкий

Дефекты

CWE-916