VYPR

CWE-257

Storing Passwords in a Recoverable Format

BaseIncompleteLikelihood: High

Description

The storage of passwords in a recoverable format makes them subject to password reuse attacks by malicious users. In fact, it should be noted that recoverable encrypted passwords provide no significant benefit over plaintext passwords since they are subject not only to reuse by malicious attackers but also by malicious insiders. If a system administrator can recover a password directly, or use a brute force search on the available information, the administrator can use the password on other accounts.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-49

CVEs mapped to this weakness (65)

page 2 of 4
  • CVE-2025-14295HigJan 22, 2026
    risk 0.46cvss epss 0.00

    Storing Passwords in a Recoverable Format vulnerability in Automated Logic WebCTRL on Windows, Carrier i-Vu on Windows. Storing Passwords in a Recoverable Format vulnerability (CWE-257) in the Web session management component allows an attacker to access stored passwords in a…

  • CVE-2025-57796MedJan 28, 2026
    risk 0.44cvss 6.8epss 0.00

    Explorance Blue versions prior to 8.14.12 use reversible symmetric encryption with a hardcoded static key to protect sensitive data, including user passwords and system configurations. This approach allows stored values to be decrypted offline if the encrypted data are obtained.

  • CVE-2024-32932MedJul 2, 2024
    risk 0.44cvss 6.8epss 0.00

    Under certain circumstances the web interface users credentials may be recovered by an authenticated user.

  • CVE-2024-32756MedJul 2, 2024
    risk 0.44cvss 6.8epss 0.00

    Under certain circumstances the Linux users credentials may be recovered by an authenticated user.

  • CVE-2023-38738MedJan 19, 2024
    risk 0.44cvss 6.8epss 0.01

    IBM OpenPages with Watson 8.3 and 9.0 could provide weaker than expected security in a OpenPages environment using Native authentication. If OpenPages is using Native authentication an attacker with access to the OpenPages database could through a series of specially crafted…

  • CVE-2021-0220MedJan 15, 2021
    risk 0.44cvss 6.8epss 0.01

    The Junos Space Network Management Platform has been found to store shared secrets in a recoverable format that can be exposed through the UI. An attacker who is able to execute arbitrary code in the victim browser (for example via XSS) or access cached contents may be able to…

  • CVE-2024-3543MedMay 2, 2024
    risk 0.42cvss 6.4epss 0.00

    Use of reversible password encryption algorithm allows attackers to decrypt passwords.  Sensitive information can be easily unencrypted by the attacker, stolen credentials can be used for arbitrary actions to corrupt the system.

  • CVE-2023-23382MedFeb 14, 2023
    risk 0.42cvss 6.5epss 0.03

    Azure Machine Learning Compute Instance Information Disclosure Vulnerability

  • CVE-2021-35050MedJun 25, 2021
    risk 0.42cvss 6.5epss 0.01

    User credentials stored in a recoverable format within Fidelis Network and Deception CommandPost. In the event that an attacker gains access to the CommandPost, these values could be decoded and used to login to the application. The vulnerability is present in Fidelis Network…

  • CVE-2019-1010241MedJul 19, 2019
    risk 0.42cvss 6.5epss 0.01

    Jenkins Credentials Binding Plugin Jenkins 1.17 is affected by: CWE-257: Storing Passwords in a Recoverable Format. The impact is: Authenticated users can recover credentials. The component is: config-variables.jelly line #30 (passwordVariable). The attack vector is: Attacker…

  • CVE-2019-5615MedApr 9, 2019
    risk 0.42cvss 6.5epss 0.01

    Users with Site-level permissions can access files containing the username-encrypted passwords of Security Console Global Administrators and clear-text passwords for restoring backups, as well as the salt for those passwords. Valid credentials are required to access these files…

  • CVE-2026-22614MedMar 10, 2026
    risk 0.40cvss 6.1epss 0.00

    The encryption mechanism used in Eaton's EasySoft project file was insecure and susceptible to brute force attacks, an attacker with access to this file and the local host machine could potentially read the sensitive information stored and tamper with the project file. This…

  • CVE-2022-34837MedAug 24, 2022
    risk 0.40cvss 6.2epss 0.00

    Storing Passwords in a Recoverable Format vulnerability in ABB Zenon 8.20 allows an attacker who successfully exploit the vulnerability may add more network clients that may monitor various activities of the Zenon.

  • CVE-2019-19096MedApr 2, 2020
    risk 0.40cvss 6.1epss 0.00

    The Redis data structure component used in ABB eSOMS versions 6.0 to 6.0.2 stores credentials in clear text. If an attacker has file system access, this can potentially compromise the credentials' confidentiality.

  • CVE-2024-51552MedMay 22, 2025
    risk 0.39cvss 6.0epss 0.00

    Weak password storage vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*.

  • CVE-2025-8307MedJan 8, 2026
    risk 0.38cvss epss 0.00

    Asseco InfoMedica is a comprehensive solution used to manage both administrative and medical tasks in the healthcare sector. Passwords of all users are stored in a database in an encoded format. An attacker in possession of these encoded passwords is able to decode them by using…

  • CVE-2024-32151MedNov 26, 2024
    risk 0.38cvss 5.9epss 0.01

    User passwords are decrypted and stored on memory before any user logged in. Those decrypted passwords can be retrieved from the coredump file. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors…

  • CVE-2022-46142MedDec 13, 2022
    risk 0.37cvss 5.7epss 0.00

    Affected devices store the CLI user passwords encrypted in flash memory. Attackers with physical access to the device could retrieve the file and decrypt the CLI user passwords.

  • CVE-2026-30785MedMar 5, 2026
    risk 0.36cvss 5.5epss 0.00

    Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution'), Use of Password Hash With Insufficient Computational Effort vulnerability in rustdesk-client RustDesk Client rustdesk, hbb_common on Windows, MacOS, Linux (Password security module, config…

  • CVE-2024-20462MedOct 16, 2024
    risk 0.36cvss 5.5epss 0.00

    A vulnerability in the web-based management interface of Cisco ATA 190 Series Multiplatform Analog Telephone Adapter firmware could allow an authenticated, local attacker with low privileges to view passwords on an affected device. This vulnerability is due to incorrect…