CVE-2018-5552
Versions of DocuTrac QuicDoc and Office Therapy that ship with DTISQLInstaller.exe version 1.6.4.0 and prior contains a hard-coded cryptographic salt, "S@l+&pepper".
Scoring
- Severity
- LOW
- CVSS base score
- 2.9
- CVSS vector
- CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
- EPSS probability
- 0.03%
- CWE
- CWE-760, CWE-760
- Published
- 2018-03-19
- Last modified
- 2026-03-14
Affected products
- DocuTrac DTISQLInstaller.exe
Weakness type
Related vulnerabilities
- CVE-2026-46749 — A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 6). The affected...
- CVE-2026-9370 — ulisesbocchio jasypt-spring-boot Password Hash SimpleGCMConfig.java getSecretKeySaltGenerator hash predictable salt
- CVE-2025-9290 — Authentication Weakness on Omada Controllers, Gateways and Access Points
- CVE-2024-13951 — One way hash with predictable salt
- CVE-2025-26486 — Broken or Risky Cryptographic Algorithm, Use of Password Hash...
- CVE-2023-22599
- CVE-2021-38314 — Gutenberg Template Library & Redux Framework <= 4.2.11 Sensitive Information Disclosure
- CVE-2020-28214 — A CWE-760: Use of a One-Way Hash with a Predictable Salt vulnerability exists in Modicon M221 (all...