CWE-326

Inadequate Encryption Strength

Parent: CWE-693 - Protection Mechanism Failure

The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.

448 vulnerabilities with CWE-326
CVE-2025-9513 LOW
Editso Fuso <1.0.4-beta.7 - Code Injection
CVSS 3.7
CVE-2025-9239 LOW
elunez eladmin <2.7 - Info Disclosure
CVSS 3.7
CVE-2025-45765 CRITICAL
ruby-jwt v3.0.0.beta1 - Info Disclosure
CVSS 9.1
CVE-2025-45764 LOW
jsrsasign v11.1.0 - Info Disclosure
CVSS 3.2
CVE-2025-45770 HIGH
jwt < 5.4.3 - Inadequate Encryption Strength
CVSS 7.0
CVE-2025-45769 MEDIUM
firebase/php-jwt < 6.11.0 - Inadequate Encryption Strength
CVSS 6.5
CVE-2025-36106 MEDIUM
IBM Cognos Analytics Mobile 1.1.0-1.1.22 - Inadequate Encryption Strength via AFNetworking Library
CVSS 6.5
CVE-2025-7789 LOW
Xuxueli xxl-job <3.1.1 - Password Hashing
CVSS 3.7
CVE-2025-7398 CRITICAL
Brocade ASCG < 3.3.0 - Inadequate Encryption Strength on Internal Ports
CVSS 9.1
CVE-2025-32874 HIGH
Kaseya Rapid Fire Tools Network Detective <2.0.16.0 - Info Disclosure
CVSS 7.5
CVE-2025-48823 MEDIUM
Windows Cryptographic Services - Info Disclosure
CVSS 5.9
CVE-2025-27460 HIGH
Endress MEAC300-FNADE4 Firmware - Missing Full Volume Encryption
CVSS 7.6
CVE-2025-48960 MEDIUM
Acronis Cyber Protect <39938 - Info Disclosure
CVSS 5.9
CVE-2025-43925 MEDIUM
Unicom Focal Point 7.6.1 - Inadequate Encryption Strength
CVSS 4.6
CVE-2025-4894 LOW
calmkart django-sso-server - Inadequate Encryption Strength in gen_rsa_keys Function
CVSS 3.7
CVE-2025-27524 MEDIUM
Hitachi JP1/IT Desktop Management 2 - Smart Device Manager <12-00-0...
CVSS 5.3
CVE-2025-22446 MEDIUM
Intel(R) Tiber Edge Platform - Privilege Escalation
CVSS 4.6
CVE-2025-46833 MEDIUM
Python Encryption <6ce60b1 - Info Disclosure
CVE-2025-20667 HIGH
MediaTek LR12A, LR13, NR15, NR16, NR17, NR17R - Remote Information Disclosure via Rogue Base Station
CVSS 7.5
CVE-2025-46626 HIGH
Tenda RX2 Pro 16.03.30.14 - Info Disclosure
CVSS 7.3
CVE-2025-2516 CRITICAL
WPS Office >=12.1.0.18276 - Weak Cryptographic Key Pair in Signature Verification
CVE-2025-2349 LOW
IROAD Dash Cam FX2 <20250308 - Info Disclosure
CVSS 3.1
CVE-2024-38341 MEDIUM
IBM Sterling Secure Proxy <6.2.0.1 - Info Disclosure
CVSS 5.9
CVE-2024-42177 LOW
HCL MyXalytics - Inadequate Encryption Strength via SSL/TLS Protocol
CVSS 2.6
CVE-2024-54089 HIGH
APOGEE PXC Series - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 448