Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-41879

Опубликовано: 10 июл. 2026
Источник: nvd
EPSS Низкий

Описание

R-SOFT DMS stores superadmin credentials using a non-salted nested MD5 hash. This allows an attacker who obtain password hash to decode superadmin credentials. Critically, this password cannot be changed except by modifying the configuration file.

This issue was fixed in version v3.17-2000.

EPSS

Процентиль: 10%
0.00199
Низкий

Дефекты

CWE-328

Связанные уязвимости

github
24 дня назад

R-SOFT DMS stores superadmin credentials using a non-salted nested MD5 hash. This allows an attacker who obtain password hash to decode superadmin credentials. Critically, this password cannot be changed except by modifying the configuration file. This issue was fixed in version v3.17-2000.

EPSS

Процентиль: 10%
0.00199
Низкий

Дефекты

CWE-328