PT-2014-4644 · Cogent · Cogent Datahub
Publicado
2014-05-30
·
Atualizado
2025-10-03
·
CVE-2014-2354
CVSS v2.0
6.0
Média
| Vetor | AV:L/AC:H/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Cogent DataHub versions prior to 7.3.5
Description
The issue makes it easier for attackers to obtain cleartext passwords via a brute-force attack because it does not use a salt during password hashing.
Recommendations
For versions prior to 7.3.5, update to version 7.3.5 or later to resolve the issue.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Cogent Datahub