CWE-327

High likelihood

Use of a Broken or Risky Cryptographic Algorithm

Parent: CWE-693 - Protection Mechanism Failure

The product uses a broken or risky cryptographic algorithm or protocol.

687 vulnerabilities with CWE-327
CVE-2023-5347 CRITICAL
Korenix JetNet Series - Improper Verification of Cryptographic Signature
CVSS 9.8
CVE-2023-50351 HIGH
HCL DRYiCE MyXalytics - Use of a Broken or Risky Cryptographic Algorithm via Insecure Key Rotation Mechanism
CVSS 8.2
CVE-2023-50350 HIGH
HCL DRYiCE MyXalytics - Use of a Broken Cryptographic Algorithm
CVSS 8.2
CVE-2023-5962 MEDIUM
Moxa ioLogik E1200 Series Firmware < 3.3 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 6.5
CVE-2023-41097 MEDIUM
Silabs Gecko Software Development Kit < 4.4.0 - Observable Timing Discrepancy in CBC PKCS7 Padding
CVSS 4.6
CVE-2023-50481 HIGH
blinksocks 3.3.8 - Sensitive Information Exposure via Weak Encryption in SSR Auth Chain
CVSS 7.5
CVE-2023-50475 CRITICAL
bcoin 2.2.0 - Sensitive Information Exposure via Weak Hashing in faye-websocket.js
CVSS 9.1
CVE-2023-28053 MEDIUM
Dell NetWorker Virtual Edition < 19.8.0.4 - Use of a Broken or Risky Cryptographic Algorithm in SSH Component
CVSS 5.3
CVE-2023-26024 MEDIUM
IBM Planning Analytics - Info Disclosure
CVSS 6.5
CVE-2023-38361 MEDIUM
IBM CICS TX Advanced 10.1 - Info Disclosure
CVSS 5.9
CVE-2023-47640 MEDIUM
DataHub < 0.11.1 - Authenticated Privilege Escalation via SHA-1 HMAC Session Signing
CVSS 6.4
CVE-2023-5627 HIGH
NPort 6000 Series - Privilege Escalation
CVSS 7.5
CVE-2023-46233 CRITICAL
crypto-js < 4.2.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 9.1
CVE-2023-46133 CRITICAL
CryptoES < 2.1.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 9.1
CVE-2023-30994 MEDIUM
IBM QRadar SIEM <7.5.0 - Info Disclosure
CVSS 5.4
CVE-2023-3350 HIGH
IBERMATICA RPS 2019 - Info Disclosure
CVSS 8.2
CVE-2023-39252 MEDIUM
Dell SCG Policy Manager 5.16.00.14 - Unauthenticated Sensitive Information Exposure via Broken Cryptographic Algorithm
CVSS 5.9
CVE-2023-43635 HIGH
EVE OS - PCR Locking
CVSS 8.8
CVE-2023-34039 CRITICAL
VMWare Aria Operations for Networks (vRealize Network Insight) SSH Private Key Exposure
CVSS 9.8
CVE-2023-34758 HIGH
Sliver 1.5.0-1.5.39 - Man-in-the-Middle Attack via Cryptographic Implementation Flaw
CVSS 8.1
CVE-2023-38730 MEDIUM
IBM Storage Copy Data Management <2.2.19.0 - Info Disclosure
CVSS 5.9
CVE-2023-40371 MEDIUM
IBM AIX 7.2-7.3 and VIOS 3.1 - Improper Access Control in OpenSSH
CVSS 6.2
CVE-2023-4331 HIGH
Broadcom RAID Controller - Info Disclosure
CVSS 7.5
CVE-2023-4326 HIGH
Broadcom RAID Controller - SSL/TLS Vulnerability
CVSS 7.5
CVE-2023-23347 MEDIUM
HCL DRYiCE iAutomate - Use of a Broken Cryptographic Algorithm
CVSS 6.4
Details
Vulnerabilities 687
Exploit Likelihood High