CWE-327

High likelihood

Use of a Broken or Risky Cryptographic Algorithm

Parent: CWE-693 - Protection Mechanism Failure

The product uses a broken or risky cryptographic algorithm or protocol.

669 vulnerabilities with CWE-327
CVE-2020-26140 MEDIUM
ALFA AWUS036H Firmware - Use of a Broken or Risky Cryptographic Algorithm
CVSS 6.5
CVE-2020-24588 LOW
IEEE 802.11 - Unauthenticated Packet Injection via A-MSDU Flag Manipulation
CVSS 3.5
CVE-2020-24587 LOW
IEEE 802.11 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 2.6
CVE-2020-4965 HIGH
IBM Collaborative Lifecycle Management - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-36315 MEDIUM
RELIC < 2020-08-01 - RSA PKCS#1 v1.5 Signature Forgery via Inadequate Padding Validation
CVSS 5.3
CVE-2020-4831 HIGH
IBM DataPower Gateway 10.0.0.0-10.0.1.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-12702 MEDIUM
eWeLink < 4.9.1 (iOS) and < 4.9.2 (Android) - Weak Encryption in Quick Pairing Mode
CVSS 4.6
CVE-2020-25493 HIGH
Oclean Mobile Application 2.1.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-14246 HIGH
HCL OneTest Performance 9.5, 10.0, 10.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-28498 MEDIUM
elliptic < 6.5.4 - Cryptographic Side-Channel via secp256k1 ECDH Key Derivation
CVSS 6.8
CVE-2020-29536 MEDIUM
RSA Archer < 6.6.0.8 - Authenticated Sensitive Information Exposure via Service File Path
CVSS 4.3
CVE-2020-36201 HIGH
Xerox WorkCentre Multiple Models Firmware - Weak Cryptographic Algorithm
CVSS 7.5
CVE-2020-23162 HIGH
Pyrescom Termod4 <10.04k - Info Disclosure
CVSS 7.5
CVE-2020-4968 MEDIUM
IBM Security Identity Governance and Intelligence 5.2.6 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 6.5
CVE-2020-20949 MEDIUM
STM32Cube Cryptographic Library - Remote Information Disclosure via Bleichenbacher's PKCS #1 v1.5 Oracle Attack
CVSS 5.9
CVE-2020-20950 MEDIUM
Ietf Public Key Cryptography Standard... - Broken Cryptographic Algorithm
CVSS 5.9
CVE-2020-4596 HIGH
IBM Security Guardium Insights 2.0.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4595 HIGH
IBM Security Guardium Insights 2.0.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4594 HIGH
IBM Security Guardium Insights 2.0.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4898 HIGH
IBM Emptoris Strategic Supply Management 10.1.3.0-10.1.3.29 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-23250 LOW
GigaVUE-OS 5.4-5.9 - Use of a Broken or Risky Cryptographic Algorithm in Internal Database Hash
CVSS 2.3
CVE-2020-14254 HIGH
HCL BigFix Platform < 10.0.2 - Use of Broken Cryptographic Algorithm via TLS-RSA Cipher Suites
CVSS 7.5
CVE-2020-28396 HIGH
SICAM A8000 CP-8000/8021/8022 Firmware < V16 - Use of Broken Cryptographic Algorithm via Web Server Misconfiguration
CVSS 7.3
CVE-2020-25232 HIGH
LOGO! 8 BM Firmware <8.3 - Key Extraction via Insecure Random Number Generation
CVSS 7.5
CVE-2020-25230 HIGH
Siemens LOGO! 8 BM Firmware <8.3 - Encryption Key Extraction via Outdated Cipher Mode on Port 10005/tcp
CVSS 7.5
Details
Vulnerabilities 669
Exploit Likelihood High