CWE-321

High likelihood

Use of Hard-coded Cryptographic Key

Parent: CWE-798 - Use of Hard-coded Credentials

The product uses a hard-coded, unchangeable cryptographic key.

297 vulnerabilities with CWE-321
CVE-2025-6074 MEDIUM
ABB RMC-100, ABB RMC-100 LITE - Auth Bypass
CVSS 6.5
CVE-2025-6071 MEDIUM
ABB RMC-100, ABB RMC-100 LITE - Info Disclosure
CVSS 5.3
CVE-2025-6669 LOW
gooaclok819 sublinkX <1.8 - Code Injection
CVSS 3.7
CVE-2025-5353 HIGH
Ivanti Workspace Control <10.19.10.0 - Info Disclosure
CVSS 8.8
CVE-2025-22463 HIGH
Ivanti Workspace Control <10.19.10.0 - Info Disclosure
CVSS 7.3
CVE-2025-22455 HIGH
Ivanti Workspace Control <10.19.0.0 - Privilege Escalation
CVSS 8.8
CVE-2025-49164 MEDIUM
Arris VIP1113 < 2025-05-30 - Use of Hard-coded Cryptographic Key
CVSS 4.3
CVE-2025-5164 LOW
PerfreeBlog 4.0.11 - Code Injection
CVSS 3.7
CVE-2025-48417 MEDIUM
Firmware - Man-in-the-Middle Attack
CVSS 6.5
CVE-2025-4876 MEDIUM
ConnectWise Risk Assessment - Info Disclosure
CVSS 6.0
CVE-2025-45746 MEDIUM
ZKT ZKBio CVSecurity 6.4.1_R - Auth Bypass
CVSS 6.5
CVE-2025-32730 MEDIUM
i-PRO Configuration Tool - Auth Bypass
CVSS 5.5
CVE-2025-30206 CRITICAL
Dpanel < 1.6.1 - Unauthenticated Authentication Bypass via Hardcoded JWT Secret
CVSS 9.8
CVE-2025-31362 LOW
BizRobo! - Use of Hard-coded Cryptographic Key
CVSS 3.7
CVE-2025-3177 MEDIUM
FastCMS 0.1.5 - Use of Hard-coded Cryptographic Key in JWT Handler
CVSS 5.0
CVE-2025-30406 CRITICAL KEV
Gladinet CentreStack < 16.4.10315.56368 Use of Hard-coded Key Leads to Unauthenticated RCE
CVSS 9.0
CVE-2025-30095 CRITICAL
VyOS 1.3-1.5 - Use of Hard-coded Cryptographic Key in Dropbear SSH Host Keys
CVSS 9.0
CVE-2025-30234 HIGH
SmartOS - Use of Hard-coded Cryptographic Key in SSH Host Keys
CVSS 8.3
CVE-2025-27674 CRITICAL
Vasion Print <22.0.843 - Hardcoded IdP Key
CVSS 9.8
CVE-2025-26340 HIGH
Q-Free MaxTime <= 2.11.0 - Auth Bypass
CVSS 8.8
CVE-2025-1099 HIGH
Tapo C500 Wi-Fi camera - Info Disclosure
CVE-2024-54855 MEDIUM
Vanilla OS 2 Core image <1.1.0 - Info Disclosure
CVSS 6.4
CVE-2024-56429 HIGH
itech iLabClient <3.7.1 - Info Disclosure
CVSS 7.7
CVE-2024-58134 HIGH
Mojolicious <0.999922 - Info Disclosure
CVSS 8.1
CVE-2024-54027 HIGH
FortiSandbox <4.4.6 - Info Disclosure
CVSS 8.2
Details
Vulnerabilities 297
Exploit Likelihood High