CWE-259

High likelihood

Use of Hard-coded Password

Parent: CWE-798 - Use of Hard-coded Credentials

The product contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components.

186 vulnerabilities with CWE-259
CVE-2023-51629 HIGH
D-Link DCS-8300LHV2 - Auth Bypass
CVSS 8.8
CVE-2023-32145 HIGH
Dlink Dap-1360 Firmware < 6.15eub01 - Authentication Bypass
CVSS 8.8
CVE-2023-49963 HIGH
DYMO LabelWriter Print Server <2.366 - RCE
CVSS 8.8
CVE-2023-50948 MEDIUM
IBM Storage Fusion HCI <2.7 - Info Disclosure
CVSS 6.5
CVE-2023-28895 LOW
PWC Chip - Info Disclosure
CVSS 3.5
CVE-2023-41713 HIGH
SonicOS - Hard-coded Password
CVSS 7.5
CVE-2023-5222 MEDIUM
Viessmann Vitogate 300 <2.1.3.0 - Hard-Coded Password
CVSS 6.3
CVE-2023-41030 MEDIUM
Juplink RX4-1500 <V1.0.5 - Info Disclosure
CVSS 6.3
CVE-2023-23771 HIGH
Motorola MBTS Base Radio - Auth Bypass
CVSS 8.4
CVE-2023-23770 CRITICAL
Motorola MBTS Site Controller - Auth Bypass
CVSS 9.4
CVE-2023-3237 MEDIUM
OTCMS <6.62 - Hard-Coded Password
CVSS 6.3
CVE-2023-2061 MEDIUM
Mitsubishi Electric Corporation MELSEC iQ-R/F - Info Disclosure
CVSS 6.2
CVE-2023-1944 HIGH
Kubernetes Minikube - Default SSH Password
CVSS 8.4
CVE-2023-2799 MEDIUM
cnoa OA <5.1.1.5 - Hard-Coded Password
CVSS 6.3
CVE-2023-2645 CRITICAL
USR USR-G806 1.0.41 - Hard-Coded Password
CVSS 9.8
CVE-2023-29103 MEDIUM
SIMATIC Cloud Connect - Info Disclosure
CVSS 4.3
CVE-2023-0808 LOW
Deye/Revolt/Bosswerk Inverter MW3_15U_5406_1.47/MW3_15U_5406_1.47 -...
CVSS 3.9
CVE-2022-26388 MEDIUM
ELI <2.6.0 - Info Disclosure
CVSS 6.4
CVE-2022-45444 CRITICAL
Sewio's RTLS Studio <2.6.2 - Info Disclosure
CVSS 10.0
CVE-2022-41653 CRITICAL
Daikin SVMPC1 <2.1.22 - Info Disclosure
CVSS 9.8
CVE-2022-29831 HIGH
Mitsubishi Electric Corporation GX Works3 <1.095Z - Info Disclosure
CVSS 7.5
CVE-2022-29825 MEDIUM
Mitsubishi Electric GX Works3 <1.090U - Info Disclosure
CVSS 5.6
CVE-2022-22144 CRITICAL
TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14 - Info Disclosure
CVSS 9.8
CVE-2022-30271 CRITICAL
Motorola ACE1000 RTU - Info Disclosure
CVSS 9.8
CVE-2022-27172 HIGH
InHand Networks InRouter302 V3.5.37 - Code Injection
CVSS 8.8
Details
Vulnerabilities 186
Exploit Likelihood High