Predictable Salt Vulnerability in UserHashedTableAuth

Predictable Salt Vulnerability in UserHashedTableAuth

CVE-2019-12737 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

UserHashedTableAuth in JetBrains Ktor framework before 1.2.0-rc uses a One-Way Hash with a Predictable Salt for storing user credentials.

Learn more about our Web Application Penetration Testing UK.