CWE-327
High likelihoodUse of a Broken or Risky Cryptographic Algorithm
The product uses a broken or risky cryptographic algorithm or protocol.
687 vulnerabilities with CWE-327
CVE-2023-23346
MEDIUM
HCL DRYiCE MyCloud - Use of a Broken Cryptographic Algorithm
CVSS 6.4
CVE-2023-37484
MEDIUM
SAP PowerDesigner 16.7 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.3
CVE-2023-37464
HIGH
cisco/cjose < 0.6.2.2 - Use of a Broken Cryptographic Algorithm via Truncated Authentication Tag
CVSS 8.6
CVE-2023-34130
CRITICAL
SonicWall GMS <9.3.2-SP1 & Analytics <2.5.0.4-R7 - Info Disclosure
CVSS 9.8
CVE-2023-21399
HIGH
Android - Local Privilege Escalation via Cryptographic Bypass
CVSS 7.8
CVE-2023-32043
MEDIUM
Microsoft Windows Remote Desktop - Security Feature Bypass
CVSS 6.8
CVE-2023-36749
HIGH
RUGGEDCOM ROX -<V2.16.0 - Path Traversal
CVSS 7.4
CVE-2023-35890
MEDIUM
IBM WebSphere Application Server 8.5 and 9.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.1
CVE-2023-36608
MEDIUM
Ovarro TBox Firmware 1.46-1.50.598 - Use of Broken Cryptographic Algorithm via MD5 Password Hashing
CVSS 6.5
CVE-2023-26276
MEDIUM
IBM QRadar SIEM <7.5.0 - Info Disclosure
CVSS 5.9
CVE-2023-28006
HIGH
HCL BigFix OSD Bare Metal Server < 311.12 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.0
CVE-2023-21115
HIGH
Android 11-12L - Paired Device Privilege Escalation via Link Key Type Downgrade
CVSS 8.8
CVE-2023-28043
MEDIUM
Dell Secure Connect Gateway 5.14 - Information Disclosure via SRS to SCG Upgrade Path
CVSS 6.5
CVE-2023-2900
LOW
NFine Rapid Development Platform 20230511 - Use of Weak Hash in Login Check
CVSS 3.7
CVE-2023-28076
MEDIUM
Dell CloudLink < 7.1.3 - Unauthenticated Information Disclosure via Broken Cryptographic Algorithm
CVSS 5.9
CVE-2023-30441
HIGH
IBM InfoSphere Information Server - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2023-27557
MEDIUM
IBM Counter Fraud Management for Safer Payments 6.1.0.00-6.5.0.00 - Weak Cryptographic Algorithm
CVSS 5.9
CVE-2023-28244
HIGH
Windows Server 2008, 2012, 2016, 2019, 2022 - Elevation of Privilege via Kerberos
CVSS 8.1
CVE-2023-28509
HIGH
Rocket Software UniData <8.2.4-11.3.5,12.2.1 - Info Disclosure
CVSS 7.5
CVE-2023-22812
HIGH
SanDisk PrivateAccess < 6.4.9 - Use of Broken Cryptographic Algorithm via TLS 1.0 and TLS 1.1
CVSS 7.4
CVE-2023-23040
HIGH
TP-Link TL-WR940N V6 3.19.1 Build 180119 - Use of Weak MD5 Password Hashing
CVSS 7.5
CVE-2023-23695
MEDIUM
Dell Secure Connect Gateway 5.14.00.12 - Sensitive Information Exposure via Broken Cryptography
CVSS 5.9
CVE-2023-0452
CRITICAL
Econolite EOS < 3.2.23 - Unauthenticated Weak Hash Algorithm in Configuration File
CVSS 9.8
CVE-2023-0296
MEDIUM
OpenShift - Use of a Broken or Risky Cryptographic Algorithm in etcd grpc-proxy Health Checks Port
CVSS 5.3
CVE-2022-43851
MEDIUM
IBM Aspera Console <3.4.5 - Info Disclosure
CVSS 5.9
Details
Vulnerabilities
687
Exploit Likelihood
High