Vulnerabilities > CVE-2014-2354 - Credentials Management vulnerability in Cogentdatahub Cogent Datahub

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
cogentdatahub
CWE-255

Summary

Cogent DataHub before 7.3.5 does not use a salt during password hashing, which makes it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack.

Common Weakness Enumeration (CWE)