CWE-326

Inadequate Encryption Strength

Parent: CWE-693 - Protection Mechanism Failure

The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.

457 vulnerabilities with CWE-326
CVE-2018-1925 MEDIUM
IBM WebSphere MQ <9.1.1 - Info Disclosure
CVSS 5.9
CVE-2018-1946 MEDIUM
IBM Security Identity Governance and Intelligence 5.2-5.2.4.1 - Inadequate Encryption Strength
CVSS 5.9
CVE-2018-1751 MEDIUM
IBM Security Key Lifecycle Manager 3.0-3.0.0.2 - Inadequate Encryption Strength
CVSS 5.9
CVE-2018-18767 HIGH
D-Link myDlink Baby Camera Monitor - Inadequate Encryption Strength in Credential Transmission
CVSS 7.0
CVE-2018-1814 MEDIUM
IBM Security Access Manager 9.0.1.0-9.0.5.0 - Inadequate Encryption Strength
CVSS 5.9
CVE-2018-1665 MEDIUM
IBM DataPower Gateway - Info Disclosure
CVSS 5.9
CVE-2018-19001 MEDIUM
Philips HealthSuite Health Android App - Inadequate Encryption Strength
CVSS 4.3
CVE-2018-1648 HIGH
IBM QRadar SIEM <7.4 - Info Disclosure
CVSS 7.5
CVE-2018-19784 HIGH
php-proxy 5.1.0 - Inadequate Encryption Strength in str_rot_pass Function
CVSS 7.5
CVE-2018-15796 HIGH
Cloud Foundry Bits Service < 2.14.0 - Insecure URL Signing Key Exposure
CVSS 8.1
CVE-2018-1518 MEDIUM
IBM InfoSphere Information Server 11.7 - Weak Password Encryption
CVSS 6.2
CVE-2018-0448 CRITICAL
Cisco DNA Center < 1.1.4 - Authentication Bypass via Identity Management
CVSS 9.8
CVE-2018-1593 LOW
IBM Multi-Cloud Data Encryption 2.1 - Data Manipulation via Missing File Checksums
CVSS 3.7
CVE-2018-1785 HIGH
IBM Spectrum Protect Client/VE 7.1.0.0-7.1.8.3 Weak Encryption
CVSS 7.5
CVE-2018-1545 HIGH
IBM Spectrum Protect Client/VE 7.1.0.0-7.1.8.2 Weak Encryption
CVSS 7.5
CVE-2018-17177 LOW
Neato Botvac Connected <2.2.0, Botvac 85 <1.2.1 - RCE
CVSS 2.4
CVE-2018-0131 MEDIUM
Cisco IOS and IOS XE - Inadequate Encryption Strength in IKEv1 RSA-Encrypted Nonces
CVSS 5.9
CVE-2018-15124 CRITICAL
Zipato Zipabox <BOARD REV - 1 - Info Disclosure
CVSS 9.8
CVE-2018-9028 HIGH
Broadcom Privileged Access Manager 2.x < 3.0.0 - Inadequate Encryption Strength for Passwords
CVSS 7.5
CVE-2018-5184 HIGH
Thunderbird <52.8 - Info Disclosure
CVSS 7.5
CVE-2018-1466 MEDIUM
IBM SAN Volume Controller et al <8.1.1 - Info Disclosure
CVSS 5.3
CVE-2018-7242 CRITICAL
Schneider Electric Modicon and BMXNOR0200 - Inadequate Encryption Strength
CVSS 9.8
CVE-2018-4839 MEDIUM
Siemens SIPROTEC and DIGSI - Inadequate Encryption Strength
CVSS 5.3
CVE-2018-5461 MEDIUM
Belden Hirschmann - Info Disclosure
CVSS 6.5
CVE-2018-6653 MEDIUM
comforte SWAP 1049-1069, 20.0.0-21.5.3 - Inadequate Encryption Strength via TLS Cipher Suite Downgrade
CVSS 5.3
Details
Vulnerabilities 457