VYPR

CWE-916

Use of Password Hash With Insufficient Computational Effort

BaseIncomplete

Description

The product generates a hash for a password, but it uses a scheme that does not provide a sufficient level of computational effort that would make password cracking attacks infeasible or expensive.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-55

CVEs mapped to this weakness (123)

page 3 of 7
  • CVE-2021-43989HigDec 23, 2021
    risk 0.49cvss 7.5epss 0.01

    mySCADA myPRO Versions 8.20.0 and prior stores passwords using MD5, which may allow an attacker to crack the previously retrieved password hashes.

  • CVE-2021-38979HigNov 15, 2021
    risk 0.49cvss 7.5epss 0.01

    IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 uses a one-way cryptographic hash against an input that should not be reversible, such as a password, but the software does not also use a salt as part of the input. IBM X-Force ID: 212785.

  • CVE-2021-22774HigJul 21, 2021
    risk 0.49cvss 7.5epss 0.01

    A CWE-759: Use of a One-Way Hash without a Salt vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / EVF2 / EV.2 all versions prior to R8 V3.4.0.1), and EVlink Smart Wallbox (EVB1A all versions prior to R8 V3.4.0.1…

  • CVE-2020-25754HigJun 16, 2021
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered on Enphase Envoy R3.x and D4.x devices. There is a custom PAM module for user authentication that circumvents traditional user authentication. This module uses a password derived from the MD5 hash of the username and serial number. The serial number can…

  • CVE-2021-33563HigMay 24, 2021
    risk 0.49cvss 7.5epss 0.01

    Koel before 5.1.4 lacks login throttling, lacks a password strength policy, and shows whether a failed login attempt had a valid username. This might make brute-force attacks easier.

  • CVE-2020-28873HigMar 17, 2021
    risk 0.49cvss 7.5epss 0.01

    Fluxbb 1.5.11 is affected by a denial of service (DoS) vulnerability by sending an extremely long password via the user login form. When a long password is sent, the password hashing process will result in CPU and memory exhaustion on the server.

  • CVE-2019-9080HigOct 20, 2020
    risk 0.49cvss 7.5epss 0.01

    DomainMOD before 4.14.0 uses MD5 without a salt for password storage.

  • CVE-2009-5139HigFeb 12, 2020
    risk 0.49cvss 7.5epss 0.00

    The SIP implementation on the Gizmo5 software phone provides hashed credentials in a response to an invalid authentication challenge, which makes it easier for remote attackers to obtain access via a brute-force attack, related to a "SIP Digest Leak" issue.

  • CVE-2019-19766HigDec 12, 2019
    risk 0.49cvss 7.5epss 0.01

    The Bitwarden server through 1.32.0 has a potentially unwanted KDF.

  • CVE-2010-2450HigNov 7, 2019
    risk 0.49cvss 7.5epss 0.01

    The keygen.sh script in Shibboleth SP 2.0 (located in /usr/local/etc/shibboleth by default) uses OpenSSL to create a DES private key which is placed in sp-key.pm. It relies on the root umask (default 22) instead of chmoding the resulting file itself, so the generated private key…

  • CVE-2019-7649HigFeb 17, 2019
    risk 0.49cvss 7.5epss 0.01

    global.encryptPassword in bootstrap/global.js in CMSWing 1.3.7 relies on multiple MD5 operations for password hashing.

  • CVE-2019-3907HigJan 18, 2019
    risk 0.49cvss 7.5epss 0.01

    Premisys Identicard version 3.1.190 stores user credentials and other sensitive information with a known weak encryption method (MD5 hash of a salt and password).

  • CVE-2008-1526HigMar 26, 2008
    risk 0.49cvss 7.5epss 0.01

    ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(PE9) and 3.40(AGD.2) through 3.40(AHQ.3), do not use a salt when calculating an MD5 password hash, which makes it easier for attackers to crack passwords.

  • CVE-2002-1657HigDec 31, 2002
    risk 0.49cvss 7.5epss 0.01

    PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess passwords via a brute force attack.

  • CVE-2020-16231HigMay 19, 2022
    risk 0.47cvss 7.2epss 0.01

    The affected Bachmann Electronic M-Base Controllers of version MSYS v1.06.14 and later use weak cryptography to protect device passwords. Affected controllers that are actively supported include MX207, MX213, MX220, MC206, MC212, MC220, and MH230 hardware controllers, and…

  • CVE-2019-0030HigJan 15, 2019
    risk 0.47cvss 7.2epss 0.01

    Juniper ATP uses DES and a hardcoded salt for password hashing, allowing for trivial de-hashing of the password file contents. This issue affects Juniper ATP 5.0 versions prior to 5.0.3.

  • CVE-2022-1235HigApr 5, 2022
    risk 0.46cvss 8.2epss 0.01

    Weak secrethash can be brute-forced in GitHub repository livehelperchat/livehelperchat prior to 3.96.

  • CVE-2021-38400MedOct 4, 2021
    risk 0.45cvss 6.9epss 0.00

    An attacker with physical access to Boston Scientific Zoom Latitude Model 3120 can remove the hard disk drive or create a specially crafted USB to extract the password hash for brute force reverse engineering of the system password.

  • CVE-2026-5040MedJul 14, 2026
    risk 0.44cvss 6.7epss 0.00

    TP-Link Deco M5 v1 uses a weak password hashing mechanism to store user credentials. An attacker who obtains the password hash through system compromise or privileged access could perform brute-force or dictionary attacks. Successful exploitation may result in disclosure of…

  • CVE-2025-41692MedDec 9, 2025
    risk 0.44cvss 6.8epss 0.00

    A high privileged remote attacker with admin privileges for the webUI can brute-force the "root" and "user" passwords of the underlying OS due to a weak password generation algorithm.