The product contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components.
194 vulnerabilities with CWE-259
CVE-2025-46067
HIGH
Automai Director <25.2.0 - Privilege Escalation
CVSS 8.2
CVE-2025-15371
HIGH
Tenda i24, 4G03 Pro, 4G05, 4G08, G0-8G-PoE, Nova MW5G, TEG5328F - Hard-Coded Credentials in Shadow File
CVSS 7.8
CVE-2025-15111
CRITICAL
Ksenia Security lares firmware 1.6 - Unauthenticated Default Credentials
CVSS 9.8
CVE-2025-14126
HIGH
TOZED ZLT M30S/ZLT M30S PRO <1.47/3.09.06 - Hard-Coded Credentials
CVSS 8.8
CVE-2025-13252
HIGH
shsuishang ShopSuite ModulithShop <45a99398cec3b7ad7ff9383694f0b533...
CVSS 7.3
CVE-2025-12676
MEDIUM
KiotViet Sync <= 1.8.5 - Unauthenticated Authorization Bypass via Hardcoded Password
CVSS 5.3
CVE-2025-61330
MEDIUM
Magic-branded devices - Info Disclosure
CVSS 6.5
CVE-2025-11666
MEDIUM
Tenda RP3 Pro <22.5.7.93 - Info Disclosure
CVSS 6.7
CVE-2025-11649
HIGH
Tomofun Furbo <FB0035_FW_036 - Info Disclosure
CVSS 7.0
CVE-2025-11643
LOW
Tomofun Furbo - Hard-coded Credentials
CVSS 3.7
CVE-2025-11284
HIGH
Zytec Dalian Zhuoyun Technology Central Authentication Service 3 - ...
CVSS 7.3
CVE-2025-11126
CRITICAL
Apeman ID71 218.53.203.117 - Use of Hard-coded Password in system.ini
CVSS 9.8
CVE-2025-54754
HIGH
Cognex In-Sight 2000/7000/8000/9000 series and Explorer >=5.x <6.5.1 - Unauthenticated Hard-coded Password Exposure
CVSS 8.0
CVE-2025-9806
LOW
Tenda F1202 <1.2.0.20 - Info Disclosure
CVSS 1.9
CVE-2025-9778
LOW
Tenda W12 <3.0.0.6 - Hard-Coded Credentials
CVSS 1.9
CVE-2025-9731
LOW
Tenda AC9 15.03.05.19 - Hard-Coded Credentials
CVSS 2.5
CVE-2025-9725
LOW
Cudy LT500E <2.3.12 - Use of Hard-Coded Password
CVSS 2.5
CVE-2025-58081
HIGH
DOS Co., Ltd. SS1 <= 16.0.0.10 - Unauthenticated Arbitrary File Read via Hard-coded Password
CVSS 7.5
CVE-2025-9380
HIGH
FNKvision Y215 CCTV Camera - Info Disclosure
CVSS 7.8
CVE-2025-9310
MEDIUM
yeqifu carRental <3fabb7eae93d209426638863980301d6f99866b3 - Info D...
CVSS 5.3
CVE-2025-9309
LOW
Tenda AC10 16.03.10.13 - Info Disclosure
CVSS 2.5
CVE-2025-57788
MEDIUM
Commvault - Unauthenticated API Access
CVSS 6.5
CVE-2025-9091
LOW
Tenda AC20 16.03.08.12 - Info Disclosure
CVSS 2.5
CVE-2025-8974
LOW
linlinjava litemall <1.8.0 - Info Disclosure
CVSS 3.7
CVE-2025-8730
CRITICAL
Belkin F9K1009/F9K1010 <2.00.04/2.09 - Hard-coded Credentials
CVSS 9.8
Details
Vulnerabilities
194
Exploit Likelihood
High