CWE-327

High likelihood

Use of a Broken or Risky Cryptographic Algorithm

Parent: CWE-693 - Protection Mechanism Failure

The product uses a broken or risky cryptographic algorithm or protocol.

687 vulnerabilities with CWE-327
CVE-2020-5943 MEDIUM
F5 BIG-IP 14.1.0-14.1.0.1 and 14.1.2.5-14.1.2.7 - Insecure Cryptographic Storage via REST Interface
CVSS 6.5
CVE-2020-27653 HIGH
Synology Router Manager <1.2.4-8081 - Info Disclosure
CVSS 8.3
CVE-2020-27652 HIGH
Synology DSM <6.2.3-25426-2 - Info Disclosure
CVSS 8.3
CVE-2020-27611 HIGH
BigBlueButton < 2.2.28 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.3
CVE-2020-4254 HIGH
IBM Security Guardium Big Data Intelligence 1.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4778 HIGH
IBM Curam Social Program Management 7.0.9 and 7.0.10 - Use of Broken Cryptographic Algorithm via MD5 Token Hashing
CVSS 7.5
CVE-2020-9491 HIGH
Apache NiFi 1.2.0-1.11.4 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-11031 HIGH
GLPI < 9.5.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.8
CVE-2020-4614 HIGH
IBM Data Risk Manager < 2.0.6.4 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4613 HIGH
IBM Data Risk Manager < 2.0.6.4 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-14517 CRITICAL
CodeMeter < 6.90 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 9.8
CVE-2020-1596 MEDIUM
Windows - Information Disclosure via Weak TLS Hash Algorithms
CVSS 5.4
CVE-2020-6874 CRITICAL
ZTE ZXIPTV Firmware - Insufficiently Protected Credentials
CVSS 9.1
CVE-2020-4174 HIGH
IBM Security Guardium Insights 2.0.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-4169 HIGH
IBM Security Guardium Insights 2.0.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-8912 LOW
AWS S3 Crypto SDK for GoLang < 2.0 - Use of a Broken or Risky Cryptographic Algorithm via In-Band Key Negotiation
CVSS 2.5
CVE-2020-8911 MEDIUM
AWS S3 Crypto SDK for GoLang < 2.0 - Padding Oracle Attack via AES-CBC Without MAC
CVSS 5.6
CVE-2020-9528 HIGH
Shenzhen Hichip Vision Technology Firmware < 2020-06-29 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-9526 MEDIUM
CS2 Network P2P < 3.0.3a - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2020-15128 MEDIUM
OctoberCMS <1.0.468 - Info Disclosure
CVSS 6.1
CVE-2020-3681 CRITICAL
Qualcomm - Use of a Broken or Risky Cryptographic Algorithm
CVSS 9.8
CVE-2020-4185 HIGH
IBM Security Guardium 10.5, 10.6, and 11.1 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2020-15098 HIGH
TYPO3 CMS >=9.0.0 <9.5.20, >=10.0.0 <10.4.6 - RCE
CVSS 8.8
CVE-2020-10927 HIGH
NETGEAR R6700 V1.0.4.84_10.0.58 - RCE
CVSS 8.8
CVE-2020-7514 HIGH
Easergy Builder < 1.4.7.2 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.8
Details
Vulnerabilities 687
Exploit Likelihood High