CWE-916

Use of Password Hash With Insufficient Computational Effort

Parent: CWE-328 - Use of Weak Hash

The product generates a hash for a password, but it uses a scheme that does not provide a sufficient level of computational effort that would make password cracking attacks infeasible or expensive.

110 vulnerabilities with CWE-916
CVE-2026-30790
RustDesk Server Pro/OSS - Auth Bypass
CVE-2026-30789
RustDesk Client <1.4.5 - Auth Bypass
CVE-2026-30785
RustDesk Client - Info Disclosure
CVE-2025-67168 MEDIUM
RiteCMS v3.1.0 - Info Disclosure
CVSS 5.3
CVE-2025-13532 MEDIUM
Fortra's Core Privileged Access Manager - Info Disclosure
CVSS 6.2
CVE-2025-41692 MEDIUM
WebUI <unknown> - Privilege Escalation
CVSS 6.8
CVE-2025-46413 MEDIUM
BUFFALO WSR-1800AX4 - Info Disclosure
CVSS 4.3
CVE-2025-7789 LOW
Xuxueli xxl-job <3.1.1 - Password Hashing
CVSS 3.7
CVE-2025-3937 HIGH
Tridium Niagara <4.14.2-4.15.1-4.10.11 - Cryptanalysis
CVSS 7.7
CVE-2025-24340 MEDIUM
ctrlX OS - Info Disclosure
CVSS 6.5
CVE-2025-27552 MEDIUM
DBIx::Class::EncodedColumn <0.00032 - Info Disclosure
CVSS 4.0
CVE-2025-27551 MEDIUM
DBIx::Class::EncodedColumn <0.00032 - Info Disclosure
CVSS 4.0
CVE-2025-26486 MEDIUM
Beta80 Life 1st Identity Mgr <1.5.2.142 - Info Disclosure
CVSS 6.0
CVE-2025-2349 LOW
IROAD Dash Cam FX2 <20250308 - Info Disclosure
CVSS 3.1
CVE-2025-2265 HIGH
Sante PACS Server.exe - Info Disclosure
CVSS 7.8
CVE-2023-33838 MEDIUM
IBM Security Verify Governance 10.0.2 - Info Disclosure
CVSS 4.4
CVE-2024-5743 CRITICAL
Eve Home Eve Play <1.1.42 - RCE
CVSS 9.8
CVE-2024-55057 MEDIUM
Phpgurukul Online Birth Certificate System 1.0 - Info Disclosure
CVSS 5.4
CVE-2024-7701 HIGH
Percona Toolkit <3.6.0 - Info Disclosure
CVSS 7.5
CVE-2024-23091 HIGH
HotelDruid <1.32 - Info Disclosure
CVSS 7.5
CVE-2024-24553 HIGH
Bludit - Info Disclosure
CVSS 7.5
CVE-2024-3183 HIGH
FreeIPA - Info Disclosure
CVSS 8.1
CVE-2024-21754 LOW
FortiOS <7.4.3 - Info Disclosure
CVSS 1.8
CVE-2024-31464 MEDIUM
Xwiki < 14.10.19 - Information Disclosure
CVSS 6.8
CVE-2024-29886 MEDIUM
Serverpod <1.2.6 - Info Disclosure
CVSS 5.3
Details
Vulnerabilities 110