CWE-326

Inadequate Encryption Strength

Parent: CWE-693 - Protection Mechanism Failure

The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.

442 vulnerabilities with CWE-326
CVE-2025-36106 MEDIUM
IBM Cognos Analytics Mobile < 1.1.23 - Weak Encryption
CVSS 6.5
CVE-2025-7789 LOW
Xuxueli xxl-job <3.1.1 - Password Hashing
CVSS 3.7
CVE-2025-7398 CRITICAL
Brocade Ascg < 3.3.0 - Weak Encryption
CVSS 9.1
CVE-2025-32874 HIGH
Kaseya Rapid Fire Tools Network Detective <2.0.16.0 - Info Disclosure
CVSS 7.5
CVE-2025-48823 MEDIUM
Windows Cryptographic Services - Info Disclosure
CVSS 5.9
CVE-2025-27460 HIGH
Endress MEAC300-FNADE4 Firmware - Missing Full Volume Encryption
CVSS 7.6
CVE-2025-48960 MEDIUM
Acronis Cyber Protect <39938 - Info Disclosure
CVSS 5.9
CVE-2025-43925 MEDIUM
Unicomsi Focal Point - Weak Encryption
CVSS 4.6
CVE-2025-4894 LOW
Calmkart Django-sso-server - Weak Encryption
CVSS 3.7
CVE-2025-27524 MEDIUM
Hitachi JP1/IT Desktop Management 2 - Smart Device Manager <12-00-0...
CVSS 5.3
CVE-2025-22446 MEDIUM
Intel(R) Tiber Edge Platform - Privilege Escalation
CVSS 4.6
CVE-2025-46833 MEDIUM
Python Encryption <6ce60b1 - Info Disclosure
CVE-2025-20667 HIGH
Mediatek Lr12a - Weak Encryption
CVSS 7.5
CVE-2025-46626 HIGH
Tenda RX2 Pro 16.03.30.14 - Info Disclosure
CVSS 7.3
CVE-2025-2516 CRITICAL
WPS Office - Info Disclosure
CVE-2025-2349 LOW
IROAD Dash Cam FX2 <20250308 - Info Disclosure
CVSS 3.1
CVE-2024-38341 MEDIUM
IBM Sterling Secure Proxy <6.2.0.1 - Info Disclosure
CVSS 5.9
CVE-2024-42177 LOW
Hcltech Dryice Myxalytics - Weak Encryption
CVSS 2.6
CVE-2024-54089 HIGH
APOGEE PXC Series - Info Disclosure
CVSS 7.5
CVE-2024-10026 MEDIUM
Google's gVisor - Info Disclosure
CVSS 5.3
CVE-2024-13454 MEDIUM
Easy-RSA 3.0.5-3.1.7 - Info Disclosure
CVSS 5.3
CVE-2024-13026 MEDIUM
Algo Edge <2.1.1 - Auth Bypass
CVE-2024-45719 LOW
Apache Answer < 1.4.1 - Weak Encryption
CVSS 2.6
CVE-2024-52318 MEDIUM
Apache Tomcat <11.0.1-9.0.97 - Memory Corruption
CVSS 6.1
CVE-2024-52317 MEDIUM
Apache Tomcat <11.0.0-M26,<10.1.30,<9.0.95 - Memory Corruption
CVSS 6.5
Details
Vulnerabilities 442