CWE-326

Inadequate Encryption Strength

Parent: CWE-693 - Protection Mechanism Failure

The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.

442 vulnerabilities with CWE-326
CVE-2023-37301 MEDIUM
Mediawiki < 1.39.3 - Weak Encryption
CVSS 5.3
CVE-2023-36539 MEDIUM
Zoom Meetings and Poly CCX Firmware - Information Disclosure
CVSS 5.3
CVE-2023-3243 HIGH
Honeywell Alerton Bcm-web Firmware - Authentication Bypass by Spoofing
CVSS 8.3
CVE-2023-32414 HIGH
Apple Macos < 13.4 - Weak Encryption
CVSS 8.6
CVE-2023-33283 MEDIUM
Marval MSM <14.19.0.12476 - Info Disclosure
CVSS 5.5
CVE-2023-29549 MEDIUM
Mozilla Firefox < 112.0 - Weak Encryption
CVSS 6.5
CVE-2023-23597 MEDIUM
Mozilla Firefox < 109.0 - Weak Encryption
CVSS 6.5
CVE-2023-33982 MEDIUM
Bramble Handshake Protocol <1.5.3 - Info Disclosure
CVSS 5.9
CVE-2023-31135 LOW
Dgraph <v23 - Info Disclosure
CVSS 3.3
CVE-2023-1764 MEDIUM
Canon IJ Network Tool <4.7.5 - Info Disclosure
CVSS 6.5
CVE-2023-21109 HIGH
Google Android - Weak Encryption
CVSS 7.8
CVE-2023-2443 HIGH
Rockwellautomation Thinmanager < 13.0 - Weak Encryption
CVSS 7.5
CVE-2023-30351 HIGH
Tenda Cp3 Firmware - Hard-coded Credentials
CVSS 7.5
CVE-2023-2197 LOW
HashiCorp Vault Enterprise <1.13.2 - Info Disclosure
CVSS 2.5
CVE-2023-28124 MEDIUM
UI Desktop < 0.62.3.0 - Weak Encryption
CVSS 5.5
CVE-2023-24502 HIGH
Electra Central AC unit - Info Disclosure
CVSS 7.5
CVE-2023-29054 MEDIUM
SCALANCE -<V5.5.2 - Info Disclosure
CVSS 6.7
CVE-2023-27389 HIGH
Contec Cps-mg341-adsc1-111 Firmware < 3.7.10 - Weak Encryption
CVSS 7.2
CVE-2023-27987 CRITICAL
Apache Linkis < 1.3.1 - Weak Encryption
CVSS 9.1
CVE-2023-22271 MEDIUM
Experience Manager <6.5.15.0 - Info Disclosure
CVSS 5.3
CVE-2023-23911 HIGH
Product <v6 - Info Disclosure
CVSS 7.5
CVE-2023-21444 HIGH
Samsung Flow < 4.9.14.0 - Weak Encryption
CVSS 7.5
CVE-2023-21443 HIGH
Samsung Flow < 4.9.04 - Weak Encryption
CVSS 7.5
CVE-2022-40745 MEDIUM
IBM Aspera Faspex < 5.0.7 - Weak Encryption
CVSS 5.5
CVE-2022-32753 MEDIUM
IBM Security Verify Directory - Weak Encryption
CVSS 4.5
Details
Vulnerabilities 442