CWE-327

High likelihood

Use of a Broken or Risky Cryptographic Algorithm

Parent: CWE-693 - Protection Mechanism Failure

The product uses a broken or risky cryptographic algorithm or protocol.

669 vulnerabilities with CWE-327
CVE-2023-50312 MEDIUM
IBM WebSphere Application Server Liberty 17.0.0.3-24.0.0.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.3
CVE-2023-51392 MEDIUM
Ember ZNet <7.4.0 - Info Disclosure
CVSS 6.2
CVE-2023-51838 HIGH
Ylianst MeshCentral 1.1.16 - Info Disclosure
CVSS 7.5
CVE-2023-50937 MEDIUM
IBM PowerSC 1.3, 2.0, and 2.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2023-50939 MEDIUM
IBM PowerSC 1.3, 2.0, and 2.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2023-51839 CRITICAL
DeviceFarmer stf <3.6.6 - Info Disclosure
CVSS 9.1
CVE-2023-49259 HIGH
Hongdian H8951-4G-ESP Firmware <= 2310271149 - Authentication Cookie Predictability
CVSS 7.5
CVE-2023-5347 CRITICAL
Korenix JetNet Series - Improper Verification of Cryptographic Signature
CVSS 9.8
CVE-2023-50351 HIGH
HCL DRYiCE MyXalytics - Use of a Broken or Risky Cryptographic Algorithm via Insecure Key Rotation Mechanism
CVSS 8.2
CVE-2023-50350 HIGH
HCL DRYiCE MyXalytics - Use of a Broken Cryptographic Algorithm
CVSS 8.2
CVE-2023-5962 MEDIUM
Moxa ioLogik E1200 Series Firmware < 3.3 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 6.5
CVE-2023-41097 MEDIUM
Silabs Gecko Software Development Kit < 4.4.0 - Observable Timing Discrepancy in CBC PKCS7 Padding
CVSS 4.6
CVE-2023-50481 HIGH
blinksocks 3.3.8 - Sensitive Information Exposure via Weak Encryption in SSR Auth Chain
CVSS 7.5
CVE-2023-50475 CRITICAL
bcoin 2.2.0 - Sensitive Information Exposure via Weak Hashing in faye-websocket.js
CVSS 9.1
CVE-2023-28053 MEDIUM
Dell NetWorker Virtual Edition < 19.8.0.4 - Use of a Broken or Risky Cryptographic Algorithm in SSH Component
CVSS 5.3
CVE-2023-26024 MEDIUM
IBM Planning Analytics - Info Disclosure
CVSS 6.5
CVE-2023-38361 MEDIUM
IBM CICS TX Advanced 10.1 - Info Disclosure
CVSS 5.9
CVE-2023-47640 MEDIUM
DataHub < 0.11.1 - Authenticated Privilege Escalation via SHA-1 HMAC Session Signing
CVSS 6.4
CVE-2023-5627 HIGH
NPort 6000 Series - Privilege Escalation
CVSS 7.5
CVE-2023-46233 CRITICAL
crypto-js < 4.2.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 9.1
CVE-2023-46133 CRITICAL
CryptoES < 2.1.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 9.1
CVE-2023-30994 MEDIUM
IBM QRadar SIEM <7.5.0 - Info Disclosure
CVSS 5.4
CVE-2023-3350 HIGH
IBERMATICA RPS 2019 - Info Disclosure
CVSS 8.2
CVE-2023-39252 MEDIUM
Dell SCG Policy Manager 5.16.00.14 - Unauthenticated Sensitive Information Exposure via Broken Cryptographic Algorithm
CVSS 5.9
CVE-2023-43635 HIGH
EVE OS - PCR Locking
CVSS 8.8
Details
Vulnerabilities 669
Exploit Likelihood High