Vulnerabilities (CVE)

Filtered by CWE-760
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-38881 2024-08-07 N/A 7.5 HIGH
An issue in Horizon Business Services Inc. Caterease 16.0.1.1663 through 24.0.1.2405 and possibly later versions, allows a remote attacker to perform a Rainbow Table Password cracking attack due to the use of one-way hashes without salts when storing user passwords.
CVE-2020-28214 1 Schneider-electric 2 Modicon M221, Modicon M221 Firmware 2024-02-04 2.1 LOW 5.5 MEDIUM
A CWE-760: Use of a One-Way Hash with a Predictable Salt vulnerability exists in Modicon M221 (all references, all versions), that could allow an attacker to pre-compute the hash value using dictionary attack technique such as rainbow tables, effectively disabling the protection that an unpredictable salt would provide.