CVE-2018-15681

CRITICAL

BTITeam XBTIT <2.5.4 - Info Disclosure

Title source: llm
STIX 2.1

Description

An issue was discovered in BTITeam XBTIT 2.5.4. When a user logs in, their password hash is rehashed using a predictable salt and stored in the "pass" cookie, which is not flagged as HTTPOnly. Due to the weak and predictable salt that is in place, an attacker who successfully steals this cookie can efficiently brute-force it to retrieve the user's cleartext password.

References (1)

Core 1
Core References
Exploit, Mitigation, Third Party Advisory x_refsource_misc
https://rastating.github.io/xbtit-multiple-vulnerabilities/

Scores

CVSS v3 9.8
EPSS 0.0075
EPSS Percentile 50.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-732 CWE-916
Status published
Products (1)
btiteam/xbtit 2.5.4
Published Sep 05, 2018
Tracked Since Feb 18, 2026