CWE-321

High likelihood

Use of Hard-coded Cryptographic Key

Parent: CWE-798 - Use of Hard-coded Credentials

The product uses a hard-coded, unchangeable cryptographic key.

311 vulnerabilities with CWE-321
CVE-2017-5242 HIGH
Nexpose & InsightVM - Info Disclosure
CVSS 7.7
CVE-2017-14014 MEDIUM
Boston Scientific ZOOM LATITUDE PRM Model 3120 - Info Disclosure
CVSS 4.6
CVE-2017-14021 CRITICAL
Korenix JetNet - Use of Hard-coded Cryptographic Key
CVSS 9.8
CVE-2017-9649 MEDIUM
Mirion Technologies - Hard-Coded Cryptographic Key
CVSS 5.0
CVE-2017-6054 HIGH
Hyundai Motor America Blue Link <3.9.5-3.9.4 - Info Disclosure
CVSS 7.5
CVE-2017-7574 CRITICAL
Schneider Electric SoMachine Basic 1.4 SP1 & Modicon TM221CE16R 1.3.3.3 Hard-coded Credentials
CVSS 9.8
CVE-2016-9335 CRITICAL
Red Lion Controls - Hard-Coded Cryptographic Key
CVSS 10.0
CVE-2016-4437 CRITICAL KEV
Apache Shiro < 1.2.5 - Remote Code Execution via Remember Me Feature
CVSS 9.8
CVE-2015-10148 HIGH
Hirschmann HiLCOS Hard-coded Credentials SSH SSL Keys
CVSS 8.2
CVE-2014-5403
Hospira MedNet <6.1 - Info Disclosure
CVE-2014-5419
GE Multilink ML800/1200/1600/2400 < 4.2.1 & ML810/3000/3100 < 5.2.0 - Unauthenticated Traffic Decryption
Details
Vulnerabilities 311
Exploit Likelihood High