CWE-327

High likelihood

Use of a Broken or Risky Cryptographic Algorithm

Parent: CWE-693 - Protection Mechanism Failure

The product uses a broken or risky cryptographic algorithm or protocol.

687 vulnerabilities with CWE-327
CVE-2021-39182 HIGH
EnroCrypt < 1.1.4 - Use of Broken MD5 Hashing Algorithm
CVSS 7.5
CVE-2021-41168 MEDIUM
reddit/snudown < 1.7.0 - Denial of Service via Reference Table Hash Collision
CVSS 6.5
CVE-2021-31352 MEDIUM
Juniper Session and Resource Control < 4.130r6 - Information Exposure via Weak NETCONF Cipher Negotiation
CVSS 5.3
CVE-2021-36298 HIGH
Dell EMC InsightIQ <4.1.4 - Auth Bypass
CVSS 8.1
CVE-2021-29894 HIGH
IBM Cloud Pak for Security 1.7.0.0, 1.7.1.0, 1.7.2.0, 1.8.0.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2021-41096 HIGH
Rucky < 2.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2021-29750 HIGH
IBM QRadar SIEM 7.3 and 7.4 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2021-40530 MEDIUM
Crypto++ < 8.5 - Plaintext Recovery via ElGamal Cross-Configuration Attack
CVSS 5.9
CVE-2021-40529 MEDIUM
Botan < 2.18.1 - Plaintext Recovery via ElGamal Cross-Configuration Attack
CVSS 5.9
CVE-2021-40528 MEDIUM
libgcrypt < 1.9.4 - Plaintext Recovery via ElGamal Cross-Configuration Attack
CVSS 5.9
CVE-2021-31796 HIGH
CyberArk Credential Provider < 12.1 - Information Disclosure via Inadequate Encryption
CVSS 7.5
CVE-2021-33003 MEDIUM
Delta Electronics DIAEnergie <1.7.5 - Info Disclosure
CVSS 5.5
CVE-2021-29723 HIGH
IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2021-29722 HIGH
IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2021-27913 LOW
Mautic <3.3.4, <4.0.0 - Info Disclosure
CVSS 3.5
CVE-2021-29704 HIGH
IBM Security SOAR < 42.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2021-37546 MEDIUM
JetBrains TeamCity < 2021.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.3
CVE-2021-37588 MEDIUM
Charm 0.43 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2021-37587 MEDIUM
Charm 0.43 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 6.5
CVE-2021-20337 HIGH
IBM QRadar SIEM <7.4.3 - Info Disclosure
CVSS 7.5
CVE-2021-2351 HIGH
Oracle Database Server <19c - Info Disclosure
CVSS 8.3
CVE-2021-20497 HIGH
IBM Security Verify Access Docker 10.0.0 - Info Disclosure
CVSS 7.5
CVE-2021-34687 MEDIUM
iDrive RemotePC < 7.6.48 - Information Disclosure via Substitution Cipher Encryption
CVSS 5.3
CVE-2021-29794 HIGH
IBM Tivoli Netcool/Impact 7.1.0.20/7.1.0.21 - Weak Cryptographic Algorithm in SSH
CVSS 7.5
CVE-2021-20379 HIGH
IBM Guardium Data Encryption <4.0.0.4 - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 687
Exploit Likelihood High