CWE-1392

Use of Default Credentials

Parent: CWE-1391 - Use of Weak Credentials

The product uses default credentials (such as passwords or cryptographic keys) for potentially critical functionality.

98 vulnerabilities with CWE-1392
CVE-2024-7746 CRITICAL
Traccar 2.12-6.0 - Authentication Abuse via Default Credentials
CVSS 9.8
CVE-2024-6788 HIGH
CHARX SEC-3000/3050/3100/3150 <1.6.3 Unauthenticated Password Reset via LAN Update
CVSS 8.6
CVE-2024-6535 MEDIUM
Skupper - Auth Bypass
CVSS 5.3
CVE-2024-5632 MEDIUM
Longse NVR3608PGE2W and Zamel ZMB-01 - Use of Default Credentials in WiFi Network
CVE-2024-4007 HIGH
ABB ASPECT; NEXUS Series; MATRIX Series <3.07 - Info Disclosure
CVSS 8.8
CVE-2024-27158 HIGH
Toshiba Tec e-Studio multi-function peripheral (MFP) - Use of Default Credentials
CVSS 7.4
CVE-2024-5245 HIGH
NETGEAR ProSAFE Network Management System < 1.7.0.37 - Local Privilege Escalation via Default MySQL Credentials
CVSS 7.8
CVE-2024-4622 HIGH
alpitronic Hypercharger - Auth Bypass
CVE-2024-29844 CRITICAL
Evolution Controller 2.x - Info Disclosure
CVSS 9.8
CVE-2024-31069 HIGH
IO-1020 Micro ELD web server - Info Disclosure
CVSS 7.4
CVE-2024-30210 HIGH
IO-1020 Micro ELD - Info Disclosure
CVSS 7.4
CVE-2024-28093 HIGH
AdTran NetVanta 3120 - Info Disclosure
CVSS 8.8
CVE-2023-27573 CRITICAL
netbox-docker < 2.5.0 - Use of Default Credentials
CVSS 9.0
CVE-2023-40704 MEDIUM
Philips Vue PACS < 12.2.8.410 - Use of Default Credentials
CVSS 6.8
CVE-2023-43844 HIGH
Aten PE6208 <2.3.228-2.4.232 - Privilege Escalation
CVSS 8.0
CVE-2023-49621 CRITICAL
SIMATIC CN 4100 <V2.7 - Privilege Escalation
CVSS 9.8
CVE-2023-30801 CRITICAL
qBittorrent <= 4.5.5 - Unauthenticated Remote Code Execution via Default Credentials
CVSS 9.8
CVE-2023-3703 CRITICAL
Proscend Advice ICR Series - Default Credentials
CVSS 10.0
CVE-2023-30603 CRITICAL
Hitron Technologies CODA-5310 - Privilege Escalation
CVSS 9.8
CVE-2022-50803 CRITICAL
JM-DATA ONU JF511-TV <1.0.67 - Privilege Escalation
CVSS 9.8
CVE-2021-47707 CRITICAL
COMMAX CVD-Axx DVR 5.1.4 - Info Disclosure
CVE-2020-36915 HIGH
Adtec Digital SignEdje <2.08.28 - Unauthenticated RCE
CVSS 7.5
CVE-2018-25147 HIGH
Microhard Systems IPn4G 1.1.0 - Privilege Escalation
CVSS 7.5
Details
Vulnerabilities 98