CWE-760 · 8 records
Use of a One-Way Hash with a Predictable Salt
CVEs in this class
8 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2023-22599No exploit | InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r5542, contain vulnerinhandnetworks · inrouter302 firmware · CWE-760 | Critical9.1 | — | 0.3% | Jan 12, 2023 |
30Monitor | CVE-2024-38881No exploit | An issue in Horizon Business Services Inc.horizoncloud · caterease · CWE-760 | High7.5 | — | 0.4% | Aug 2, 2024 |
24Monitor | CVE-2025-9290No exploit | Authentication Weakness on Omada Controllers, Gateways and Access Pointstp-link · omada controller · CWE-760 | Medium6.0 | — | 0.2% | Jan 22, 2026 |
24Monitor | CVE-2024-13951No exploit | One way hash with predictable saltabb · aspect-enterprise · CWE-760 | Medium6.1 | — | 0.2% | May 22, 2025 |
22Monitor | CVE-2020-28214No exploit | A CWE-760: Use of a One-Way Hash with a Predictable Salt vulnerability exists in Modicon M221 (all references, all versions), that could allschneider-electric · modicon m221 firmware · CWE-760 | Medium5.5 | — | 0.7% | Dec 10, 2020 |
20Monitor | CVE-2026-46749No exploit | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 6).siemens · sinec ins · CWE-760 | Medium5.0 | — | 0.2% | Jun 9, 2026 |
13Monitor | CVE-2018-5552No exploit | DocuTrac DTISQLInstaller.exe Hard-Coded Saltdocutracinc · dtisqlinstaller · CWE-760 | Low3.3 | — | 0.2% | Mar 19, 2018 |
7Monitor | CVE-2026-82759No exploit | Reversible IP address pseudonymisation in AshAuthentication audit log hash modeteam-alembic · ash_authentication · CWE-760 | Low1.8 | — | 0.1% | Sep 17, 2026 |
- CVE-2023-2259936Monitor
InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r5542, contain vulner
CriticalCVSS 9.1No exploitEPSS 0%inhandnetworks · inrouter302 firmwareJan 12, 2023
- CVE-2024-3888130Monitor
An issue in Horizon Business Services Inc.
HighCVSS 7.5No exploitEPSS 0%horizoncloud · catereaseAug 2, 2024
- CVE-2025-929024Monitor
Authentication Weakness on Omada Controllers, Gateways and Access Points
MediumCVSS 6.0No exploitEPSS 0%tp-link · omada controllerJan 22, 2026
- CVE-2024-1395124Monitor
One way hash with predictable salt
MediumCVSS 6.1No exploitEPSS 0%abb · aspect-enterpriseMay 22, 2025
- CVE-2020-2821422Monitor
A CWE-760: Use of a One-Way Hash with a Predictable Salt vulnerability exists in Modicon M221 (all references, all versions), that could all
MediumCVSS 5.5No exploitEPSS 1%schneider-electric · modicon m221 firmwareDec 10, 2020
- CVE-2026-4674920Monitor
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 6).
MediumCVSS 5.0No exploitEPSS 0%siemens · sinec insJun 9, 2026
- CVE-2018-555213Monitor
DocuTrac DTISQLInstaller.exe Hard-Coded Salt
LowCVSS 3.3No exploitEPSS 0%docutracinc · dtisqlinstallerMar 19, 2018
- CVE-2026-827597Monitor
Reversible IP address pseudonymisation in AshAuthentication audit log hash mode
LowCVSS 1.8No exploitEPSS 0%team-alembic · ash_authenticationSep 17, 2026