CWE-327

High likelihood

Use of a Broken or Risky Cryptographic Algorithm

Parent: CWE-693 - Protection Mechanism Failure

The product uses a broken or risky cryptographic algorithm or protocol.

669 vulnerabilities with CWE-327
CVE-2023-28509 HIGH
Rocket Software UniData <8.2.4-11.3.5,12.2.1 - Info Disclosure
CVSS 7.5
CVE-2023-22812 HIGH
SanDisk PrivateAccess < 6.4.9 - Use of Broken Cryptographic Algorithm via TLS 1.0 and TLS 1.1
CVSS 7.4
CVE-2023-23040 HIGH
TP-Link TL-WR940N V6 3.19.1 Build 180119 - Use of Weak MD5 Password Hashing
CVSS 7.5
CVE-2023-23695 MEDIUM
Dell Secure Connect Gateway 5.14.00.12 - Sensitive Information Exposure via Broken Cryptography
CVSS 5.9
CVE-2023-0452 CRITICAL
Econolite EOS < 3.2.23 - Unauthenticated Weak Hash Algorithm in Configuration File
CVSS 9.8
CVE-2023-0296 MEDIUM
OpenShift - Use of a Broken or Risky Cryptographic Algorithm in etcd grpc-proxy Health Checks Port
CVSS 5.3
CVE-2022-43851 MEDIUM
IBM Aspera Console <3.4.5 - Info Disclosure
CVSS 5.9
CVE-2022-3365 CRITICAL
Remote Mouse Server <4.110 - Command Injection
CVSS 9.8
CVE-2022-43934 MEDIUM
Brocade SANnav <2.2.2 - Info Disclosure
CVSS 6.5
CVE-2022-34309 MEDIUM
IBM CICS TX 11.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2022-34310 MEDIUM
IBM CICS TX < 11.1.0.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2022-43843 MEDIUM
IBM Spectrum Scale <5.1.5.2 - Info Disclosure
CVSS 5.9
CVE-2022-24403 MEDIUM
midnightblue tetra - Use of a Broken or Risky Cryptographic Algorithm in TA61 Identity Encryption
CVSS 4.3
CVE-2022-33160 LOW
IBM Security Directory Suite 8.0.1 - Info Disclosure
CVSS 3.7
CVE-2022-43949 MEDIUM
Fortinet FortiSIEM <6.7.1 - Code Injection
CVSS 6.2
CVE-2022-36937 CRITICAL
HHVM < 4.153.4 - Use of Broken Cryptographic Algorithm via TLS 1.0 in Stream Extension
CVSS 9.8
CVE-2022-22313 MEDIUM
IBM QRadar Data Synchronization App <3.0.1 - Info Disclosure
CVSS 4.4
CVE-2022-45858 MEDIUM
FortiNAC 8.7.0-9.4.1 - Use of a Weak Cryptographic Algorithm
CVSS 4.2
CVE-2022-40722 HIGH
PingFederate 11.1.0-11.1.4 and PingID Adapter < 2.13.2 - Offline MFA Bypass via RSA Padding Misconfiguration
CVSS 7.7
CVE-2022-45170 MEDIUM
LIVEBOX Collaboration vDesk < 018 - Authenticated Cryptographic Issue via /api/v1/vencrypt/decrypt/file Endpoint
CVSS 6.5
CVE-2022-22564 MEDIUM
Dell EMC Unity <5.2.0.0.5.173 - Info Disclosure
CVSS 5.9
CVE-2022-34444 MEDIUM
Dell PowerScale OneFS 9.2.0.x-9.4.0.x - Unauthenticated Information Disclosure via Broken Cryptographic Algorithm
CVSS 5.9
CVE-2022-35720 LOW
IBM Sterling <6.1.0, <6.0.3 - Info Disclosure
CVSS 2.3
CVE-2022-43917 MEDIUM
IBM WebSphere App Server <9.0 - Info Disclosure
CVSS 5.9
CVE-2022-22462 LOW
IBM Security Verify Governance 10.0.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 3.7
Details
Vulnerabilities 669
Exploit Likelihood High