CVE-2014-2354
N/A
N/A
Summary
Cogent DataHub before 7.3.5 does not use a salt during password hashing, which makes it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Cogent | DataHub | 0 < 7.3.5 | affected |
Weaknesses
- CWE-916: CWE-916
ADP Enrichment
CVE Program Container
Additional References
References
- https://www.cisa.gov/news-events/ics-advisories/icsa-14-149-02
- http://cogentdatahub.com/Download_Software.html
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.