The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.
457 vulnerabilities with CWE-326
CVE-2023-44690
HIGH
mycli 1.27.0 - Inadequate Encryption Strength in Config File
CVSS 7.5
CVE-2023-30132
HIGH
IXP Data EasyInstall 6.6.14907.0 - Privilege Escalation via Static Cryptographic Key
CVSS 7.8
CVE-2023-43776
MEDIUM
Eaton easyE4 PLC Firmware < 2.02 - Inadequate Encryption Strength in Exported Program File
CVSS 6.8
CVE-2023-4129
MEDIUM
Dell Data Protection Central 19.9 - Unauthenticated Inadequate Encryption Strength
CVSS 5.9
CVE-2023-41305
HIGH
SMS Message Module - Info Disclosure
CVSS 7.5
CVE-2023-34971
HIGH
QNAP QTS 4.5.4-4.5.4.2467 and QuTS hero h4.5.4-h4.5.4.2476 - Inadequate Encryption Strength
CVSS 7.1
CVE-2023-4333
MEDIUM
Broadcom RAID Controller - Info Disclosure
CVSS 5.5
CVE-2023-0525
HIGH
Mitsubishi Electric GOT2000 Series <01.49.000 - Info Disclosure
CVSS 7.5
CVE-2023-28021
MEDIUM
BigFix WebUI - Inadequate Encryption Strength
CVSS 5.9
CVE-2023-21145
HIGH
Android - Local Privilege Escalation via ActivityRecord Logic Error
CVSS 7.8
CVE-2023-20942
MEDIUM
Android - Unauthenticated Audio Recording Without Microphone Privacy Indicator
CVSS 5.5
CVE-2023-20185
HIGH
Cisco NX-OS - Inadequate Encryption Strength in CloudSec Feature
CVSS 7.4
CVE-2023-35332
MEDIUM
Windows Remote Desktop Protocol - Security Feature Bypass via Inadequate Encryption Strength
CVSS 6.8
CVE-2023-36748
MEDIUM
RUGGEDCOM ROX -<V2.16.0 - Path Traversal
CVSS 5.9
CVE-2023-34337
HIGH
AMI MegaRAC SP-X - Inadequate Encryption Strength via HMAC
CVSS 7.6
CVE-2023-37301
MEDIUM
MediaWiki < 1.39.3 - AbuseFilter Bypass via SubmitEntityAction
CVSS 5.3
CVE-2023-36539
MEDIUM
Zoom Meetings and Poly CCX Firmware - Information Disclosure
CVSS 5.3
CVE-2023-3243
HIGH
Honeywell Alerton BCM-WEB 3.3.X - Authentication Bypass via Session Hash Spoofing
CVSS 8.3
CVE-2023-32414
HIGH
macOS 13.0-13.3 - Sandbox Escape via Inadequate Encryption Strength
CVSS 8.6
CVE-2023-33283
MEDIUM
Marval MSM <14.19.0.12476 - Info Disclosure
CVSS 5.5
CVE-2023-29549
MEDIUM
Firefox and Focus for Android < 112.0 - Inadequate Encryption Strength via Incorrect Realm Binding
CVSS 6.5
CVE-2023-23597
MEDIUM
Firefox < 109.0 - Arbitrary File Read via Web Security Bypass
CVSS 6.5
CVE-2023-33982
MEDIUM
Bramble Handshake Protocol <1.5.3 - Info Disclosure
CVSS 5.9
CVE-2023-31135
LOW
dgraph < 23.0.0 - Inadequate Encryption Strength in Audit Logs
CVSS 3.3
CVE-2023-1764
MEDIUM
Canon IJ Network Tool <4.7.5 - Info Disclosure
CVSS 6.5
Details
Vulnerabilities
457