CWE-327

High likelihood

Use of a Broken or Risky Cryptographic Algorithm

Parent: CWE-693 - Protection Mechanism Failure

The product uses a broken or risky cryptographic algorithm or protocol.

687 vulnerabilities with CWE-327
CVE-2025-3838 MEDIUM
Saviynt OVA based Connect - Improper Authorization and Weak Credential Hashing
CVE-2025-2920 LOW
Netis WF-2404 1.1.124EN - Weak Hash
CVSS 2.0
CVE-2025-2539 HIGH
File Away <= 3.9.9.0.1 - Missing Authorization to Unauthenticated Arbitrary File Read
CVSS 7.5
CVE-2025-26486 MEDIUM
Beta80 Life 1st Identity Mgr <1.5.2.142 - Info Disclosure
CVSS 6.0
CVE-2025-26708 MEDIUM
ZTE Link 5.4.0-5.4.9 - Unauthorized WiFi Access via Configuration Defect
CVSS 4.2
CVE-2025-27508 HIGH
Emissary < 8.24.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2025-22475 LOW
Dell PowerProtect DD < 7.10.1.50 - Information Tampering via Risky Cryptographic Implementation
CVSS 3.7
CVE-2024-43178 MEDIUM
IBM Concert 1.0.0-2.1.0 - Info Disclosure
CVSS 5.9
CVE-2024-45671 MEDIUM
IBM Security Verify Information Queue 10.0.5-10.0.8 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2024-41986 MEDIUM
Siemens Opcenter Quality SmartClient Modules - Use of Broken Cryptographic Algorithm via TLS 1.0 and 1.1
CVSS 6.4
CVE-2024-49784 MEDIUM
IBM OpenPages with Watson 8.3-9.0 - Info Disclosure
CVSS 5.3
CVE-2024-55912 MEDIUM
IBM Concert 1.0.0-1.0.5 - Use of Weak Cryptographic Algorithms
CVSS 5.9
CVE-2024-30152 MEDIUM
HCL SX v21 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 6.5
CVE-2024-22314 MEDIUM
IBM Storage Defender - Resiliency Service <2.0.13 - Info Disclosure
CVSS 5.9
CVE-2024-31896 MEDIUM
IBM SPSS Statistics <29.0.2 - Info Disclosure
CVSS 5.9
CVE-2024-45643 MEDIUM
IBM Security QRadar EDR 3.12-3.12.15 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2024-28780 MEDIUM
IBM Cognos Controller 11.0.0-11.0.1 FP3 and IBM Controller 11.1.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2024-4282 CRITICAL
Brocade SANnav <2.3.1b - Info Disclosure
CVSS 9.8
CVE-2024-10405 MEDIUM
Brocade SANnav < 2.3.1b - Use of Weak TLS Ciphers on Ports 443 and 18082
CVSS 5.3
CVE-2024-52884 HIGH
AudioCodes Mediant Session Border Controller < 7.40a.501.841 - Weak Password Encryption in Configuration Exports
CVSS 7.5
CVE-2024-49797 MEDIUM
IBM ApplinX 11.1 - Sensitive Information Exposure via Missing HTTP Strict Transport Security
CVSS 5.9
CVE-2024-26317 MEDIUM
illumos-gate 2024-02-15 - Info Disclosure
CVSS 6.1
CVE-2024-27256 MEDIUM
IBM MQ Container <3.1.4 - Info Disclosure
CVSS 5.9
CVE-2024-38320 MEDIUM
IBM Storage Protect - Info Disclosure
CVSS 5.9
CVE-2024-52331 HIGH
ECOVACS Robot Lawnmowers and Vacuums - Arbitrary Firmware Installation via Deterministic Symmetric Key
CVSS 7.5
Details
Vulnerabilities 687
Exploit Likelihood High