CWE-321
High likelihoodUse of Hard-coded Cryptographic Key
The product uses a hard-coded, unchangeable cryptographic key.
297 vulnerabilities with CWE-321
CVE-2024-13773
HIGH
Civi - Job Board & Freelance Marketplace <2.1.4 - Info Disclosure
CVSS 7.3
CVE-2024-33504
MEDIUM
FortiManager <7.6.1 - Memory Corruption
CVSS 4.1
CVE-2024-13842
MEDIUM
Ivanti Connect/Ivanti Policy <22.7R2.3/<22.7R1.3 - Info Disclosure
CVSS 6.0
CVE-2024-28989
MEDIUM
SolarWinds Web Help Desk - Info Disclosure
CVSS 5.5
CVE-2024-52881
HIGH
AudioCodes OVOC <8.4.582 - Info Disclosure
CVSS 7.5
CVE-2024-47256
MEDIUM
2N Access Commander <3.3 - Info Disclosure
CVSS 6.0
CVE-2024-12078
MEDIUM
ECOVACS Robot Firmware - Shared BLE Key Robot Control
CVSS 6.3
CVE-2024-50564
LOW
Fortinet FortiClientWindows <7.4.0 - Info Disclosure
CVSS 3.3
CVE-2024-5722
HIGH
Logsign Unified SecOps Platform 6.4.6-6.4.8 - Unauthenticated Remote Code Execution via Hard-coded Cryptographic Key
CVSS 8.8
CVE-2024-45837
MEDIUM
AIPHONE IX SYSTEM - Info Disclosure
CVSS 5.4
CVE-2024-52614
MEDIUM
Kura Sushi Official App <3.8.5 - Info Disclosure
CVSS 4.0
CVE-2024-11308
MEDIUM
DVC 6.0-6.3 - Use of Hard-coded Cryptographic Key
CVSS 6.2
CVE-2024-46889
MEDIUM
SINEC INS <V1.0 SP2 Update 3 - Info Disclosure
CVSS 5.3
CVE-2024-10920
LOW
Mariazevedo88 travels-java-api <5.0.1 - Info Disclosure
CVSS 3.1
CVE-2024-38314
MEDIUM
IBM Maximo Application Suite - Monitor Component <9.0 - Info Disclo...
CVSS 5.9
CVE-2024-20280
MEDIUM
Cisco UCS Central Software - Info Disclosure
CVSS 6.3
CVE-2024-20350
HIGH
Cisco Catalyst Center - Impersonation
CVSS 7.5
CVE-2024-46612
CRITICAL
IceCMS < 3.4.7 - JWT Authentication Bypass via Hardcoded Key
CVSS 9.8
CVE-2024-42418
HIGH
Avtec Outpost Uploader Utility < 5.0.0 - Use of Hard-coded Cryptographic Key
CVSS 7.5
CVE-2024-6890
HIGH
Journyx - Unauthenticated Password Reset Token Brute-Force via Insecure Randomness
CVSS 8.8
CVE-2024-41260
HIGH
netbird management <0.29.1 - Info Disclosure
CVSS 7.5
CVE-2024-20323
HIGH
Cisco Intelligent Node - TLS Hijack
CVSS 7.5
CVE-2024-38532
HIGH
usbarmory/mxs-dcp >= commit 6151, < commit 26a7 - Use of Hard-coded Cryptographic Key in dcp_tool
CVSS 7.1
CVE-2024-35344
CRITICAL
Anpviz Multiple IPC and YM Models <= v3.2.2.2 - Hard-coded Cryptographic Key
CVSS 9.9
CVE-2024-33849
MEDIUM
CI-Out-of-Office Manager <6.0.0.77 - Info Disclosure
CVSS 6.5
Details
Vulnerabilities
297
Exploit Likelihood
High