CVE-2018-15680
05.09.2018, 21:29
An issue was discovered in BTITeam XBTIT 2.5.4. The hashed passwords stored in the xbtit_users table are stored as unsalted MD5 hashes, which makes it easier for context-dependent attackers to obtain cleartext values via a brute-force attack.Enginsight
Vendor | Product | Version |
---|---|---|
btiteam | xbtit | 2.5.4 |
𝑥
= Vulnerable software versions