説明
The hashing algorithm of ChurchCRM v4.5.3 utilizes a non-random salt value which allows attackers to use precomputed hash tables or dictionary attacks to crack the hashed passwords.
AI分析AIによる分析
影響を受ける製品
churchcrmchurchcrm
4.5.3
参照
- https://github.com/ChurchCRM/CRM/issues/6449ExploitIssue TrackingThird Party Advisory
- https://github.com/ChurchCRM/CRM/issues/6449ExploitIssue TrackingThird Party Advisory