CWE-327

High likelihood

Use of a Broken or Risky Cryptographic Algorithm

Parent: CWE-693 - Protection Mechanism Failure

The product uses a broken or risky cryptographic algorithm or protocol.

687 vulnerabilities with CWE-327
CVE-2020-25493 HIGH
Oclean Mobile Application 2.1.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-14246 HIGH
HCL OneTest Performance 9.5, 10.0, 10.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-28498 MEDIUM
elliptic < 6.5.4 - Cryptographic Side-Channel via secp256k1 ECDH Key Derivation
CVSS 6.8
CVE-2020-29536 MEDIUM
RSA Archer < 6.6.0.8 - Authenticated Sensitive Information Exposure via Service File Path
CVSS 4.3
CVE-2020-36201 HIGH
Xerox WorkCentre Multiple Models Firmware - Weak Cryptographic Algorithm
CVSS 7.5
CVE-2020-23162 HIGH
Pyrescom Termod4 <10.04k - Info Disclosure
CVSS 7.5
CVE-2020-4968 MEDIUM
IBM Security Identity Governance and Intelligence 5.2.6 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 6.5
CVE-2020-20949 MEDIUM
STM32Cube Cryptographic Library - Remote Information Disclosure via Bleichenbacher's PKCS #1 v1.5 Oracle Attack
CVSS 5.9
CVE-2020-20950 MEDIUM
Ietf Public Key Cryptography Standard... - Broken Cryptographic Algorithm
CVSS 5.9
CVE-2020-4596 HIGH
IBM Security Guardium Insights 2.0.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4595 HIGH
IBM Security Guardium Insights 2.0.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4594 HIGH
IBM Security Guardium Insights 2.0.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4898 HIGH
IBM Emptoris Strategic Supply Management 10.1.3.0-10.1.3.29 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-23250 LOW
GigaVUE-OS 5.4-5.9 - Use of a Broken or Risky Cryptographic Algorithm in Internal Database Hash
CVSS 2.3
CVE-2020-14254 HIGH
HCL BigFix Platform < 10.0.2 - Use of Broken Cryptographic Algorithm via TLS-RSA Cipher Suites
CVSS 7.5
CVE-2020-28396 HIGH
SICAM A8000 CP-8000/8021/8022 Firmware < V16 - Use of Broken Cryptographic Algorithm via Web Server Misconfiguration
CVSS 7.3
CVE-2020-25232 HIGH
LOGO! 8 BM Firmware <8.3 - Key Extraction via Insecure Random Number Generation
CVSS 7.5
CVE-2020-25230 HIGH
Siemens LOGO! 8 BM Firmware <8.3 - Encryption Key Extraction via Outdated Cipher Mode on Port 10005/tcp
CVSS 7.5
CVE-2020-7339 MEDIUM
McAfee Database Security < 4.8.0 - Use of a Broken or Risky Cryptographic Algorithm via SHA1 Signed Certificate
CVSS 6.3
CVE-2020-4624 MEDIUM
IBM Cloud Pak for Security 1.3.0.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.3
CVE-2020-29063 HIGH
CDATA Firmware - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4937 HIGH
IBM Sterling B2B Integrator 5.2.0.0-6.0.3.2 - Use of Weak Cryptographic Algorithms
CVSS 7.5
CVE-2020-8897 MEDIUM
AWS Encryption SDK <2.0.0 - Info Disclosure
CVSS 4.8
CVE-2020-25694 HIGH
PostgreSQL < 9.5.24 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 8.1
CVE-2020-25658 HIGH
python-rsa 2.1-4.6 - Bleichenbacher Timing Attack via RSA Decryption API
CVSS 7.5
Details
Vulnerabilities 687
Exploit Likelihood High