CRITICAL🇵🇱 Wersja polska

CVE-2018-15681

CVSS 9.8v3.0pub. 2018-09-05upd. 2024-11-21

An issue was discovered in BTITeam XBTIT 2.5.4. When a user logs in, their password hash is rehashed using a predictable salt and stored in the "pass" cookie, which is not flagged as HTTPOnly. Due to the weak and predictable salt that is in place, an attacker who successfully steals this cookie can efficiently brute-force it to retrieve the user's cleartext password.

CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Btiteam Xbtit

    APP
    Btiteam
    2.5.4
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2018-15680CRITICAL9.8PL ✓same product

BTITeam XBTIT: przechowywanie haseł jako niezasalowane skróty MD5

CVE-2021-45821HIGH8.8same product

A blind SQL injection vulnerability exists in Xbtit 3.1 via the sid parameter in ajaxchat/getHistoryChatData.p...

CVE-2018-15682HIGH8.8same product

An issue was discovered in BTITeam XBTIT. Due to a lack of cross-site request forgery protection, it is possib...

CVE-2021-45822MEDIUM6.1same product

A cross-site scripting vulnerability is present in Xbtit 3.1. The stored XSS vulnerability occurs because /aja...

CVE-2018-17870MEDIUM6.1same product

An issue was discovered in BTITeam XBTIT 2.5.4. The "returnto" parameter of account_change.php is vulnerable t...