CWE-916
Overview
- CWE ID
- 916
- CWE Name
- Use of Password Hash With Insufficient Computational Effort
- CWE Abstraction
- Base
- CWE structure
- Simple
- CWE Status
- Incomplete
Description
The software generates a hash for a password, but it uses a scheme that does not provide a sufficient level of computational effort that would make password cracking attacks infeasible or expensive.