CVE-2024-13951
One way hash with predictable salt vulnerabilities in ASPECT may expose sensitive information to a potential attackerThis issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 7.6
- CVSS vector
- CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:L/VA:L/SC:N/SI:L/SA:L
- EPSS probability
- 0.20%
- CWE
- CWE-760
- Published
- 2025-05-22
- Last modified
- 2026-03-13
Affected products
- ABB ASPECT-Enterprise
- ABB NEXUS Series
- ABB MATRIX Series
Weakness type
Related vulnerabilities
- CVE-2026-46749 — A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 6). The affected...
- CVE-2026-9370 — ulisesbocchio jasypt-spring-boot Password Hash SimpleGCMConfig.java getSecretKeySaltGenerator hash predictable salt
- CVE-2025-9290 — Authentication Weakness on Omada Controllers, Gateways and Access Points
- CVE-2025-26486 — Broken or Risky Cryptographic Algorithm, Use of Password Hash...
- CVE-2023-22599
- CVE-2021-38314 — Gutenberg Template Library & Redux Framework <= 4.2.11 Sensitive Information Disclosure
- CVE-2020-28214 — A CWE-760: Use of a One-Way Hash with a Predictable Salt vulnerability exists in Modicon M221 (all...
- CVE-2018-5552 — DocuTrac DTISQLInstaller.exe Hard-Coded Salt