CWE-327
High likelihoodUse of a Broken or Risky Cryptographic Algorithm
The product uses a broken or risky cryptographic algorithm or protocol.
669 vulnerabilities with CWE-327
CVE-2023-28509
HIGH
Rocket Software UniData <8.2.4-11.3.5,12.2.1 - Info Disclosure
CVSS 7.5
CVE-2023-22812
HIGH
SanDisk PrivateAccess < 6.4.9 - Use of Broken Cryptographic Algorithm via TLS 1.0 and TLS 1.1
CVSS 7.4
CVE-2023-23040
HIGH
TP-Link TL-WR940N V6 3.19.1 Build 180119 - Use of Weak MD5 Password Hashing
CVSS 7.5
CVE-2023-23695
MEDIUM
Dell Secure Connect Gateway 5.14.00.12 - Sensitive Information Exposure via Broken Cryptography
CVSS 5.9
CVE-2023-0452
CRITICAL
Econolite EOS < 3.2.23 - Unauthenticated Weak Hash Algorithm in Configuration File
CVSS 9.8
CVE-2023-0296
MEDIUM
OpenShift - Use of a Broken or Risky Cryptographic Algorithm in etcd grpc-proxy Health Checks Port
CVSS 5.3
CVE-2022-43851
MEDIUM
IBM Aspera Console <3.4.5 - Info Disclosure
CVSS 5.9
CVE-2022-3365
CRITICAL
Remote Mouse Server <4.110 - Command Injection
CVSS 9.8
CVE-2022-43934
MEDIUM
Brocade SANnav <2.2.2 - Info Disclosure
CVSS 6.5
CVE-2022-34309
MEDIUM
IBM CICS TX 11.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2022-34310
MEDIUM
IBM CICS TX < 11.1.0.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2022-43843
MEDIUM
IBM Spectrum Scale <5.1.5.2 - Info Disclosure
CVSS 5.9
CVE-2022-24403
MEDIUM
midnightblue tetra - Use of a Broken or Risky Cryptographic Algorithm in TA61 Identity Encryption
CVSS 4.3
CVE-2022-33160
LOW
IBM Security Directory Suite 8.0.1 - Info Disclosure
CVSS 3.7
CVE-2022-43949
MEDIUM
Fortinet FortiSIEM <6.7.1 - Code Injection
CVSS 6.2
CVE-2022-36937
CRITICAL
HHVM < 4.153.4 - Use of Broken Cryptographic Algorithm via TLS 1.0 in Stream Extension
CVSS 9.8
CVE-2022-22313
MEDIUM
IBM QRadar Data Synchronization App <3.0.1 - Info Disclosure
CVSS 4.4
CVE-2022-45858
MEDIUM
FortiNAC 8.7.0-9.4.1 - Use of a Weak Cryptographic Algorithm
CVSS 4.2
CVE-2022-40722
HIGH
PingFederate 11.1.0-11.1.4 and PingID Adapter < 2.13.2 - Offline MFA Bypass via RSA Padding Misconfiguration
CVSS 7.7
CVE-2022-45170
MEDIUM
LIVEBOX Collaboration vDesk < 018 - Authenticated Cryptographic Issue via /api/v1/vencrypt/decrypt/file Endpoint
CVSS 6.5
CVE-2022-22564
MEDIUM
Dell EMC Unity <5.2.0.0.5.173 - Info Disclosure
CVSS 5.9
CVE-2022-34444
MEDIUM
Dell PowerScale OneFS 9.2.0.x-9.4.0.x - Unauthenticated Information Disclosure via Broken Cryptographic Algorithm
CVSS 5.9
CVE-2022-35720
LOW
IBM Sterling <6.1.0, <6.0.3 - Info Disclosure
CVSS 2.3
CVE-2022-43917
MEDIUM
IBM WebSphere App Server <9.0 - Info Disclosure
CVSS 5.9
CVE-2022-22462
LOW
IBM Security Verify Governance 10.0.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 3.7
Details
Vulnerabilities
669
Exploit Likelihood
High