CWE-327
High likelihoodUse of a Broken or Risky Cryptographic Algorithm
The product uses a broken or risky cryptographic algorithm or protocol.
669 vulnerabilities with CWE-327
CVE-2023-34039
CRITICAL
VMWare Aria Operations for Networks (vRealize Network Insight) SSH Private Key Exposure
CVSS 9.8
CVE-2023-34758
HIGH
Sliver 1.5.0-1.5.39 - Man-in-the-Middle Attack via Cryptographic Implementation Flaw
CVSS 8.1
CVE-2023-38730
MEDIUM
IBM Storage Copy Data Management <2.2.19.0 - Info Disclosure
CVSS 5.9
CVE-2023-40371
MEDIUM
IBM AIX 7.2-7.3 and VIOS 3.1 - Improper Access Control in OpenSSH
CVSS 6.2
CVE-2023-4331
HIGH
Broadcom RAID Controller - Info Disclosure
CVSS 7.5
CVE-2023-4326
HIGH
Broadcom RAID Controller - SSL/TLS Vulnerability
CVSS 7.5
CVE-2023-23347
MEDIUM
HCL DRYiCE iAutomate - Use of a Broken Cryptographic Algorithm
CVSS 6.4
CVE-2023-23346
MEDIUM
HCL DRYiCE MyCloud - Use of a Broken Cryptographic Algorithm
CVSS 6.4
CVE-2023-37484
MEDIUM
SAP PowerDesigner 16.7 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.3
CVE-2023-37464
HIGH
cisco/cjose < 0.6.2.2 - Use of a Broken Cryptographic Algorithm via Truncated Authentication Tag
CVSS 8.6
CVE-2023-34130
CRITICAL
SonicWall GMS <9.3.2-SP1 & Analytics <2.5.0.4-R7 - Info Disclosure
CVSS 9.8
CVE-2023-21399
HIGH
Android - Local Privilege Escalation via Cryptographic Bypass
CVSS 7.8
CVE-2023-32043
MEDIUM
Microsoft Windows Remote Desktop - Security Feature Bypass
CVSS 6.8
CVE-2023-36749
HIGH
RUGGEDCOM ROX -<V2.16.0 - Path Traversal
CVSS 7.4
CVE-2023-35890
MEDIUM
IBM WebSphere Application Server 8.5 and 9.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.1
CVE-2023-36608
MEDIUM
Ovarro TBox Firmware 1.46-1.50.598 - Use of Broken Cryptographic Algorithm via MD5 Password Hashing
CVSS 6.5
CVE-2023-26276
MEDIUM
IBM QRadar SIEM <7.5.0 - Info Disclosure
CVSS 5.9
CVE-2023-28006
HIGH
HCL BigFix OSD Bare Metal Server < 311.12 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.0
CVE-2023-21115
HIGH
Android 11-12L - Paired Device Privilege Escalation via Link Key Type Downgrade
CVSS 8.8
CVE-2023-28043
MEDIUM
Dell Secure Connect Gateway 5.14 - Information Disclosure via SRS to SCG Upgrade Path
CVSS 6.5
CVE-2023-2900
LOW
NFine Rapid Development Platform 20230511 - Use of Weak Hash in Login Check
CVSS 3.7
CVE-2023-28076
MEDIUM
Dell CloudLink < 7.1.3 - Unauthenticated Information Disclosure via Broken Cryptographic Algorithm
CVSS 5.9
CVE-2023-30441
HIGH
IBM InfoSphere Information Server - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2023-27557
MEDIUM
IBM Counter Fraud Management for Safer Payments 6.1.0.00-6.5.0.00 - Weak Cryptographic Algorithm
CVSS 5.9
CVE-2023-28244
HIGH
Windows Server 2008, 2012, 2016, 2019, 2022 - Elevation of Privilege via Kerberos
CVSS 8.1
Details
Vulnerabilities
669
Exploit Likelihood
High