logo

Hash Disclosure - MD4 / MD5

  • Risk:
  • Low

  • Type:
  • Passive
Summary

A hash was disclosed by the web server. - MD4 / MD5

Solution

Ensure that hashes that are used to protect credentials or other resources are not leaked by the web server or database. There is typically no requirement for password hashes to be accessible to the web browser.

References

https://openwall.info/wiki/john/sample-hashes

Free security scan for your website