Description Dolibarr ERP/CRM 4.0.4 stores passwords with the MD5 algorithm, which makes brute-force attacks easier. Remediation References CVE-2017-7888 Related Vulnerabilities WordPress Plugin Integration for Contact Form 7 and ActiveCampaign Cross-Site Scripting (1.0.3) Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13592) IBM RTC Exposure of Resource to Wrong Sphere Vulnerability (CVE-2021-29701) Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-7837) MySQL CVE-2021-35622 Vulnerability (CVE-2021-35622) Severity Critical Classification CVE-2017-7888 CWE-326 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities