CWE-327

High likelihood

Use of a Broken or Risky Cryptographic Algorithm

Parent: CWE-693 - Protection Mechanism Failure

The product uses a broken or risky cryptographic algorithm or protocol.

669 vulnerabilities with CWE-327
CVE-2020-9526 MEDIUM
CS2 Network P2P < 3.0.3a - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2020-15128 MEDIUM
OctoberCMS <1.0.468 - Info Disclosure
CVSS 6.1
CVE-2020-3681 CRITICAL
Qualcomm - Use of a Broken or Risky Cryptographic Algorithm
CVSS 9.8
CVE-2020-4185 HIGH
IBM Security Guardium 10.5, 10.6, and 11.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-15098 HIGH
TYPO3 CMS >=9.0.0 <9.5.20, >=10.0.0 <10.4.6 - RCE
CVSS 8.8
CVE-2020-10927 HIGH
NETGEAR R6700 V1.0.4.84_10.0.58 - RCE
CVSS 8.8
CVE-2020-7514 HIGH
Easergy Builder < 1.4.7.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.8
CVE-2020-7689 MEDIUM
node.bcrypt.js < 5.0.0 - Integer Overflow in Data Length Handling
CVSS 5.9
CVE-2020-4452 HIGH
IBM API Connect 2018.4.1.0-2018.4.1.11 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-7511 HIGH
Schneider-electric Easergy T300 Firmware < 1.5.2 - Broken Cryptographic Algorithm
CVSS 7.5
CVE-2020-4191 MEDIUM
IBM Security Guardium 11.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 4.4
CVE-2020-13777 HIGH
GnuTLS 3.6.4-3.6.13 - Use of a Broken or Risky Cryptographic Algorithm in Session Ticket Encryption
CVSS 7.4
CVE-2020-4367 HIGH
IBM Planning Analytics Local 2.0-2.0.9 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-13757 HIGH
Python-RSA < 4.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4379 HIGH
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4350 HIGH
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4349 HIGH
IBM Spectrum Scale 5.0.0.0-5.0.4.4 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-13135 MEDIUM
D-Link DSP-W215 1.26b03 - Info Disclosure
CVSS 6.5
CVE-2020-6861 MEDIUM
Ledger Monero < 1.5.1 - Master Spending Key Extraction via Crafted Messages
CVSS 5.5
CVE-2020-11035 HIGH
GLPI 0.83.3-9.4.6 - Use of a Broken or Risky Cryptographic Algorithm in CSRF Token Generation
CVSS 7.5
CVE-2020-11876 HIGH
Zoom Meetings 4.6.11 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-10377 CRITICAL
Mitel MiVoice Connect Client < 214.100.1213.0 - Unauthenticated Weak Encryption
CVSS 9.8
CVE-2020-11872 HIGH
OpenTrace 1.0 - Fabrication Attack via TempID Request Flooding
CVSS 7.5
CVE-2020-10932 MEDIUM
Arm Mbed TLS <2.16.6, <2.7.15 - Memory Corruption
CVSS 4.7
CVE-2020-11005 MEDIUM
WindowsHello <1.0.4 - Info Disclosure
CVSS 5.1
Details
Vulnerabilities 669
Exploit Likelihood High