CWE-916— Use of Password Hash With Insufficient Computational Effort
92 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-916page 1 of 2
- CVE-2009-5139HIGHCVSS 7.5EG 7.52020-02-12
The SIP implementation on the Gizmo5 software phone provides hashed credentials in a response to an invalid authentication challenge, which makes it easier for remote attackers to obtain access via a brute-force attack, related to a "SIP D…
- CVE-2010-2450HIGHCVSS 7.5EG 7.52019-11-07
The keygen.sh script in Shibboleth SP 2.0 (located in /usr/local/etc/shibboleth by default) uses OpenSSL to create a DES private key which is placed in sp-key.pm. It relies on the root umask (default 22) instead of chmoding the resulting f…
- CVE-2014-0083MEDIUMCVSS 5.5EG 5.52019-11-21
The Ruby net-ldap gem before 0.11 uses a weak salt when generating SSHA passwords.
- CVE-2014-2560HIGHCVSS 7.5EG 7.52020-02-12
The PhonerLite phone before 2.15 provides hashed credentials in a response to an invalid authentication challenge, which makes it easier for remote attackers to obtain access via a brute-force attack, related to a "SIP Digest Leak" issue.
- CVE-2017-18917HIGHCVSS 7.5EG 7.52020-06-19
An issue was discovered in Mattermost Server before 3.8.2, 3.7.5, and 3.6.7. Weak hashing was used for e-mail invitations, OAuth, and e-mail verification tokens.
- CVE-2017-3962MEDIUMCVSS 5.62018-06-12
Password recovery exploitation vulnerability in the non-certificate-based authentication mechanism in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows attackers to crack user passwords via unsalted hashes.
- CVE-2018-10618CRITICALCVSS 9.82018-08-01
Davolink DVW-3200N all version prior to Version 1.00.06. The device generates a weak password hash that is easily cracked, allowing a remote attacker to obtain the password for the device.
- CVE-2018-13811MEDIUMCVSS 5.52018-12-13
A vulnerability has been identified in SIMATIC STEP 7 (TIA Portal) (All Versions < V15.1). Password hashes with insufficient computational effort could allow an attacker to access to a project file and reconstruct passwords. The vulnerabil…
- CVE-2018-1447MEDIUMCVSS 5.12018-04-04
The GSKit (IBM Spectrum Protect 7.1 and 7.2) and (IBM Spectrum Protect Snapshot 4.1.3, 4.1.4, and 4.1.6) CMS KDB logic fails to salt the hash function resulting in weaker than expected protection of passwords. A weak password may be recove…
- CVE-2018-15680CRITICALCVSS 9.82018-09-05
An issue was discovered in BTITeam XBTIT 2.5.4. The hashed passwords stored in the xbtit_users table are stored as unsalted MD5 hashes, which makes it easier for context-dependent attackers to obtain cleartext values via a brute-force atta…
- CVE-2018-15681CRITICALCVSS 9.82018-09-05
An issue was discovered in BTITeam XBTIT 2.5.4. When a user logs in, their password hash is rehashed using a predictable salt and stored in the "pass" cookie, which is not flagged as HTTPOnly. Due to the weak and predictable salt that is i…
- CVE-2018-15717MEDIUMCVSS 5.32018-12-12
Open Dental before version 18.4 stores user passwords as base64 encoded MD5 hashes.
- CVE-2018-9233HIGHCVSS 7.82018-04-05
Sophos Endpoint Protection 10.7 uses an unsalted SHA-1 hash for password storage in %PROGRAMDATA%\Sophos\Sophos Anti-Virus\Config\machine.xml, which makes it easier for attackers to determine a cleartext password, and subsequently choose u…
- CVE-2019-0030HIGHCVSS 7.22019-01-15
Juniper ATP uses DES and a hardcoded salt for password hashing, allowing for trivial de-hashing of the password file contents. This issue affects Juniper ATP 5.0 versions prior to 5.0.3.
- CVE-2019-12305MEDIUMCVSS 6.5EG 6.52020-10-16
In EZCast Pro II, the administrator password md5 hash is provided upon a web request. This hash can be cracked to access the administration panel of the device.
- CVE-2019-12737MEDIUMCVSS 5.3EG 5.32019-10-02
UserHashedTableAuth in JetBrains Ktor framework before 1.2.0-rc uses a One-Way Hash with a Predictable Salt for storing user credentials.
- CVE-2019-17216CRITICALCVSS 9.8EG 9.82019-10-06
An issue was discovered on V-Zug Combi-Steam MSLQ devices before Ethernet R07 and before WLAN R05. Password authentication uses MD5 to hash passwords. Cracking is possible with minimal effort.
- CVE-2019-19735CRITICALCVSS 9.1EG 9.12019-12-30
class.userpeer.php in MFScripts YetiShare 3.5.2 through 4.5.3 uses an insecure method of creating password reset hashes (based only on microtime), which allows an attacker to guess the hash and set the password within a few hours by brutef…
- CVE-2019-19766HIGHCVSS 7.5EG 7.52019-12-12
The Bitwarden server through 1.32.0 has a potentially unwanted KDF.
- CVE-2019-20062CRITICALCVSS 9.8EG 9.82020-02-10
MFScripts YetiShare v3.5.2 through v4.5.4 might allow an attacker to reset a password by using a leaked hash (the hash never expires until used).
- CVE-2019-20138HIGHCVSS 7.5EG 7.52019-12-30
The HTTP Authentication library before 2019-12-27 for Nim has weak password hashing because the default algorithm for libsodium's crypto_pwhash_str is not used.
- CVE-2019-20466HIGHCVSS 7.8EG 7.82021-04-02
An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A local attacker with the "default" account is capable of reading the /etc/passwd file, which contains a weakly hashed root password. By taking th…
- CVE-2019-20575MEDIUMCVSS 5.4EG 5.42020-03-24
An issue was discovered on Samsung mobile devices with P(9.0) software. The WPA3 handshake feature allows a downgrade or dictionary attack. The Samsung ID is SVE-2019-14204 (August 2019).
- CVE-2019-3907HIGHCVSS 7.52019-01-18
Premisys Identicard version 3.1.190 stores user credentials and other sensitive information with a known weak encryption method (MD5 hash of a salt and password).
- CVE-2019-6563CRITICALCVSS 9.82019-03-05
Moxa IKS and EDS generate a predictable cookie calculated with an MD5 hash, allowing an attacker to capture the administrator's password, which could lead to a full compromise of the device.
- CVE-2019-7649HIGHCVSS 7.52019-02-17
global.encryptPassword in bootstrap/global.js in CMSWing 1.3.7 relies on multiple MD5 operations for password hashing.
- CVE-2019-9080HIGHCVSS 7.5EG 7.52020-10-20
DomainMOD before 4.14.0 uses MD5 without a salt for password storage.
- CVE-2020-0533MEDIUMCVSS 6.7EG 6.72020-06-15
Reversible one-way hash in Intel(R) CSME versions before 11.8.76, 11.12.77 and 11.22.77 may allow a privileged user to potentially enable escalation of privilege, denial of service or information disclosure via local access.
- CVE-2020-10040MEDIUMCVSS 5.5EG 5.52020-07-14
A vulnerability has been identified in SICAM MMU (All versions < V2.05), SICAM SGU (All versions), SICAM T (All versions < V2.18). An attacker with local access to the device might be able to retrieve some passwords in clear text.
- CVE-2020-10538MEDIUMCVSS 5.5EG 5.52021-02-05
An issue was discovered in Epikur before 20.1.1. It stores the secret passwords of the users as MD5 hashes in the database. MD5 can be brute-forced efficiently and should not be used for such purposes. Additionally, since no salt is used, …
- CVE-2020-12069HIGHCVSS 7.8EG 9.82022-12-26
In CODESYS V3 products in all versions prior V3.5.16.0 containing the CmpUserMgr, the CODESYS Control runtime system stores the online communication passwords using a weak hashing algorithm. This can be used by a local attacker with low pr…
- CVE-2020-14389HIGHCVSS 8.1EG 8.12020-11-17
It was found that Keycloak before version 12.0.0 would permit a user with only view-profile role to manage the resources in the new account console, allowing access and modification of data the user was not intended to have.
- CVE-2020-14512HIGHCVSS 8.1EG 8.12020-08-25
GateManager versions prior to 9.2c, The affected product uses a weak hash type, which may allow an attacker to view user passwords.
- CVE-2020-14516CRITICALCVSS 10.0EG 10.02021-03-18
In Rockwell Automation FactoryTalk Services Platform Versions 6.10.00 and 6.11.00, there is an issue with the implementation of the SHA-256 hashing algorithm with FactoryTalk Services Platform that prevents the user password from being has…
- CVE-2020-16231HIGHCVSS 7.2EG 8.82022-05-19
The affected Bachmann Electronic M-Base Controllers of version MSYS v1.06.14 and later use weak cryptography to protect device passwords. Affected controllers that are actively supported include MX207, MX213, MX220, MC206, MC212, MC220, an…
- CVE-2020-25754HIGHCVSS 7.5EG 7.52021-06-16
An issue was discovered on Enphase Envoy R3.x and D4.x devices. There is a custom PAM module for user authentication that circumvents traditional user authentication. This module uses a password derived from the MD5 hash of the username an…
- CVE-2020-27693MEDIUMCVSS 4.4EG 4.42020-11-09
Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 stores administrative passwords using a hash that is considered outdated.
- CVE-2020-28873HIGHCVSS 7.5EG 7.52021-03-17
Fluxbb 1.5.11 is affected by a denial of service (DoS) vulnerability by sending an extremely long password via the user login form. When a long password is sent, the password hashing process will result in CPU and memory exhaustion on the …
- CVE-2020-6780MEDIUMCVSS 4.4EG 4.42021-01-26
Use of Password Hash With Insufficient Computational Effort in the database of Bosch FSM-2500 server and Bosch FSM-5000 server up to and including version 5.2 allows a remote attacker with admin privileges to dump the credentials of other …
- CVE-2021-21253MEDIUMCVSS 5.8EG 5.82021-01-21
OnlineVotingSystem is an open source project hosted on GitHub. OnlineVotingSystem before version 1.1.2 hashes user passwords without a salt, which is vulnerable to dictionary attacks. Therefore there is a threat of security breach in the v…
- CVE-2021-22741MEDIUMCVSS 6.7EG 6.72021-05-26
Use of Password Hash with Insufficient Computational Effort vulnerability exists in ClearSCADA (all versions), EcoStruxure Geo SCADA Expert 2019 (all versions), and EcoStruxure Geo SCADA Expert 2020 (V83.7742.1 and prior), which could caus…
- CVE-2021-22774HIGHCVSS 7.5EG 7.52021-07-21
A CWE-759: Use of a One-Way Hash without a Salt vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / EVF2 / EV.2 all versions prior to R8 V3.4.0.1), and EVlink Smart Wallbox (…
- CVE-2021-23855HIGHCVSS 8.6EG 7.52021-10-04
The user and password data base is exposed by an unprotected web server resource. Passwords are hashed with a weak hashing algorithm and therefore allow an attacker to determine the password by using rainbow tables.
- CVE-2021-26113MEDIUMCVSS 6.2EG 7.52022-04-06
A use of a one-way hash with a predictable salt vulnerability [CWE-760] in FortiWAN before 4.5.9 may allow an attacker who has previously come in possession of the password file to potentially guess passwords therein stored.
- CVE-2021-32519CRITICALCVSS 9.8EG 9.82021-07-07
Use of password hash with insufficient computational effort vulnerability in QSAN Storage Manager, XEVO, SANOS allows remote attackers to recover the plain-text password by brute-forcing the MD5 hash. The referred vulnerability has been so…
- CVE-2021-32596MEDIUMCVSS 6.0EG 6.02021-08-04
A use of one-way hash with a predictable salt vulnerability in the password storing mechanism of FortiPortal 6.0.0 through 6.04 may allow an attacker already in possession of the password store to decrypt the passwords by means of precompu…
- CVE-2021-32997HIGHCVSS 8.2EG 7.52022-05-25
The affected Baker Hughes Bentley Nevada products (3500 System 1 6.x, Part No. 3060/00 versions 6.98 and prior, 3500 System 1, Part No. 3071/xx & 3072/xx versions 21.1 HF1 and prior, 3500 Rack Configuration, Part No. 129133-01 versions 6.4…
- CVE-2021-33003MEDIUMCVSS 5.5EG 5.52021-08-30
Delta Electronics DIAEnergie Version 1.7.5 and prior may allow an attacker to retrieve passwords in cleartext due to a weak hashing algorithm.
- CVE-2021-33563HIGHCVSS 7.5EG 7.52021-05-24
Koel before 5.1.4 lacks login throttling, lacks a password strength policy, and shows whether a failed login attempt had a valid username. This might make brute-force attacks easier.
- CVE-2021-36767CRITICALCVSS 9.8EG 9.82021-10-08
In Digi RealPort through 4.10.490, authentication relies on a challenge-response mechanism that gives access to the server password, making the protection ineffective. An attacker may send an unauthenticated request to the server. The serv…
Map vulnerabilities like CWE-916 to your infrastructure
EchelonGraph correlates every CVE — across CWE-916 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →