Threats Tagged 'cwe-759'
View all threats tagged with 'cwe-759'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-759'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-57263: CWE-759: Use of a One-Way Hash without a Salt in Siemens LOGO! Soft ComfortCVE-2026-57263 0 A vulnerability has been identified in LOGO! Soft Comfort (All versions < V9). The project password feature in the affected products stores the password as an unsalted SHA-256 hash. This could allow an attacker who has obtained the project file to perform efficient offline dictionary or brute-force attacks against the unsalted hash. Join the discussion | CVE Database V5 | 08/11/2026, 12:20:22 UTC Added: 08/11/2026, 12:42:08 UTC |
CVE-2025-15631: CWE-759 Use of a One-Way hash without a salt in TP-Link Systems Inc. Omada GatewaysCVE-2025-15631 0 A cryptographic weakness exists in affected Omada devices where site credentials are protected using a legacy hashing algorithm that does not provide sufficient protection. An attacker who obtains access to stored credential data may be able to recover valid credentials to gain unauthorized access to affected devices or management environments. Join the discussion | CVE Database V5 | 08/03/2026, 17:51:52 UTC Added: 08/03/2026, 18:33:33 UTC |
CVE-2025-15544: CWE-759 Use of a One-Way hash without a salt in TP-Link Systems Inc. Omada GatewaysCVE-2025-15544 0 A cryptographic weakness exists in the Omada device adoption process. During adoption, authentication credentials associated with site management are transmitted using a weak hashing algorithm that does not provide sufficient protection. An attacker who successfully intercepts adoption-related authentication traffic may be able to recover valid credentials and gain unauthorized access to managed devices or controller-managed environments. Join the discussion | CVE Database V5 | 08/03/2026, 17:49:13 UTC Added: 08/03/2026, 18:33:33 UTC |
Showing 1 to 3 of 3 results