CWE-327

High likelihood

Use of a Broken or Risky Cryptographic Algorithm

Parent: CWE-693 - Protection Mechanism Failure

The product uses a broken or risky cryptographic algorithm or protocol.

669 vulnerabilities with CWE-327
CVE-2024-48016 MEDIUM
Dell Secure Connect Gateway 5.24 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 4.6
CVE-2024-47188 HIGH
Suricata < 7.0.7 - Denial of Service via Predictable Hash Table Behavior
CVSS 7.5
CVE-2024-47187 HIGH
Suricata < 7.0.7 - Predictable Hash Table Behavior via Uninitialized Random Seed
CVSS 7.5
CVE-2024-8452 HIGH
PLANET Technology - Info Disclosure
CVSS 7.5
CVE-2024-39583 HIGH
Dell PowerScale InsightIQ 5.0-5.1 - Unauthenticated Elevation of Privileges via Broken Cryptographic Algorithm
CVSS 8.1
CVE-2024-37068 MEDIUM
IBM Maximo Application Suite Manage Component 8.10, 8.11, 9.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2024-45394 HIGH
Authenticator <7.0.0 - Info Disclosure
CVSS 8.8
CVE-2024-45193 MEDIUM
Matrix libolm <=3.2.16 - Info Disclosure
CVSS 4.3
CVE-2024-36440 MEDIUM
Swissphone DiCal-RED 4009 - Info Disclosure
CVSS 6.8
CVE-2024-39745 MEDIUM
IBM Sterling Connect:Direct Web Services 6.0-6.3 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2024-41270 CRITICAL
appleboy/gorush < 1.18.4 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 9.1
CVE-2024-28972 MEDIUM
Dell InsightIQ 5.0.0 - Unauthenticated Information Disclosure via Broken Cryptographic Algorithm
CVSS 5.9
CVE-2024-40465 HIGH
beego <2.2.0 - Privilege Escalation
CVSS 8.8
CVE-2024-39731 MEDIUM
IBM Datacap Navigator 9.1.5-9.1.9 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2024-30098 HIGH
Windows Cryptographic Services - Privilege Escalation
CVSS 7.5
CVE-2024-32852 MEDIUM
Dell PowerScale OneFS 8.2.2.x-9.7.0.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2024-37137 LOW
Dell CloudLink < 7.1.9 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 3.8
CVE-2024-29175 MEDIUM
Dell PowerProtect Data Domain < 7.7.5.40 - Unauthenticated Man-in-the-Middle via Weak Cryptographic Algorithm
CVSS 5.9
CVE-2024-3264 MEDIUM
Mia-Med Health Aplication <1.0.14 - Signature Spoofing
CVSS 5.3
CVE-2024-35537 HIGH
TVS Connect Android 4.6.0 and iOS 5.0.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2024-32911 CRITICAL
Android - Remote Privilege Escalation via Improper Cryptographic Algorithm
CVSS 9.8
CVE-2024-5559 MEDIUM
PowerLogic P5 Firmware < 01.500.104 - Denial of Service and Remote Code Execution via Reset Token
CVSS 6.1
CVE-2024-36823 HIGH
Ninja Core v7.0.0 - Info Disclosure
CVSS 7.5
CVE-2024-20070 MEDIUM
MediaTek NR15 NR16 NR17 - Remote Information Disclosure via Weak Cryptographic Algorithm
CVSS 5.1
CVE-2024-31510 CRITICAL
Open Quantum Safe liboqs 10.0 - Privilege Escalation via crypto_sign_signature Parameter
CVSS 9.8
Details
Vulnerabilities 669
Exploit Likelihood High