CWE-916

Use of Password Hash With Insufficient Computational Effort

Parent: CWE-328 - Use of Weak Hash

The product generates a hash for a password, but it uses a scheme that does not provide a sufficient level of computational effort that would make password cracking attacks infeasible or expensive.

110 vulnerabilities with CWE-916
CVE-2020-27693 MEDIUM
Trend Micro IMSVA 9.1 - Info Disclosure
CVSS 4.4
CVE-2020-14512 HIGH
GateManager <9.2c - Info Disclosure
CVSS 8.1
CVE-2020-10040 MEDIUM
SICAM - Info Disclosure
CVSS 5.5
CVE-2019-20466 HIGH
Sannce Smart HD Wifi Security Camera - Info Disclosure
CVSS 7.8
CVE-2019-9080 HIGH
DomainMOD <4.14.0 - Info Disclosure
CVSS 7.5
CVE-2019-20575 MEDIUM
Samsung <P.9.0 - Auth Bypass
CVSS 5.4
CVE-2019-19735 CRITICAL
MFScripts YetiShare <4.5.3 - Info Disclosure
CVSS 9.1
CVE-2019-20138 HIGH
Nim HTTP Auth <2019-12-27 - Info Disclosure
CVSS 7.5
CVE-2019-19766 HIGH
Bitwarden <1.32.0 - Info Disclosure
CVSS 7.5
CVE-2019-17216 CRITICAL
V-Zug Combi-Steam MSLQ <Ethernet R07 & WLAN R05 - Info Disclosure
CVSS 9.8
CVE-2019-12737 MEDIUM
JetBrains Ktor <1.2.0-rc - Info Disclosure
CVSS 5.3
CVE-2019-6563 CRITICAL
Moxa IKS/EDS - Info Disclosure
CVSS 9.8
CVE-2019-7649 HIGH
CMSWing 1.3.7 - Info Disclosure
CVSS 7.5
CVE-2019-3907 HIGH
Premisys Identicard <3.1.190 - Info Disclosure
CVSS 7.5
CVE-2019-0030 HIGH
Juniper ATP <5.0.3 - Info Disclosure
CVSS 7.2
CVE-2018-13811 MEDIUM
Siemens Simatic Step 7 (tia Portal) < 15.1 - Information Disclosure
CVSS 5.5
CVE-2018-15717 MEDIUM
Open Dental <18.4 - Info Disclosure
CVSS 5.3
CVE-2018-15681 CRITICAL
BTITeam XBTIT <2.5.4 - Info Disclosure
CVSS 9.8
CVE-2018-15680 CRITICAL
BTITeam XBTIT <2.5.4 - Info Disclosure
CVSS 9.8
CVE-2018-10618 CRITICAL
Davolink DVW-3200N <1.00.06 - Info Disclosure
CVSS 9.8
CVE-2018-9233 HIGH
Sophos Endpoint Protection 10.7 - Info Disclosure
CVSS 7.8
CVE-2018-1447 MEDIUM
IBM Spectrum Protect <7.2 - Password Weakness
CVSS 5.1
CVE-2017-18917 HIGH
Mattermost Server <3.8.2-3.6.7 - Info Disclosure
CVSS 7.5
CVE-2017-3962 MEDIUM
McAfee NSM <8.2.7.42.2 - Info Disclosure
CVSS 5.6
CVE-2017-11131 MEDIUM
heinekingmedia StashCat - Info Disclosure
CVSS 5.9
Details
Vulnerabilities 110