CWE-327
High likelihoodUse of a Broken or Risky Cryptographic Algorithm
The product uses a broken or risky cryptographic algorithm or protocol.
687 vulnerabilities with CWE-327
CVE-2024-45193
MEDIUM
Matrix libolm <=3.2.16 - Info Disclosure
CVSS 4.3
CVE-2024-36440
MEDIUM
Swissphone DiCal-RED 4009 - Info Disclosure
CVSS 6.8
CVE-2024-39745
MEDIUM
IBM Sterling Connect:Direct Web Services 6.0-6.3 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2024-41270
CRITICAL
appleboy/gorush < 1.18.4 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 9.1
CVE-2024-28972
MEDIUM
Dell InsightIQ 5.0.0 - Unauthenticated Information Disclosure via Broken Cryptographic Algorithm
CVSS 5.9
CVE-2024-40465
HIGH
beego <2.2.0 - Privilege Escalation
CVSS 8.8
CVE-2024-39731
MEDIUM
IBM Datacap Navigator 9.1.5-9.1.9 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2024-30098
HIGH
Windows Cryptographic Services - Privilege Escalation
CVSS 7.5
CVE-2024-32852
MEDIUM
Dell PowerScale OneFS 8.2.2.x-9.7.0.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.9
CVE-2024-37137
LOW
Dell CloudLink < 7.1.9 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 3.8
CVE-2024-29175
MEDIUM
Dell PowerProtect Data Domain < 7.7.5.40 - Unauthenticated Man-in-the-Middle via Weak Cryptographic Algorithm
CVSS 5.9
CVE-2024-3264
MEDIUM
Mia-Med Health Aplication <1.0.14 - Signature Spoofing
CVSS 5.3
CVE-2024-35537
HIGH
TVS Connect Android 4.6.0 and iOS 5.0.0 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 7.5
CVE-2024-32911
CRITICAL
Android - Remote Privilege Escalation via Improper Cryptographic Algorithm
CVSS 9.8
CVE-2024-5559
MEDIUM
PowerLogic P5 Firmware < 01.500.104 - Denial of Service and Remote Code Execution via Reset Token
CVSS 6.1
CVE-2024-36823
HIGH
Ninja Core v7.0.0 - Info Disclosure
CVSS 7.5
CVE-2024-20070
MEDIUM
MediaTek NR15 NR16 NR17 - Remote Information Disclosure via Weak Cryptographic Algorithm
CVSS 5.1
CVE-2024-31510
CRITICAL
Open Quantum Safe liboqs 10.0 - Privilege Escalation via crypto_sign_signature Parameter
CVSS 9.8
CVE-2024-4563
MEDIUM
Progress MOVEit Automation < 2024.0.0 - Use of a Broken or Risky Cryptographic Algorithm in Configuration Export
CVSS 6.1
CVE-2024-31989
CRITICAL
Argo CD < 2.8.19 - Unauthenticated Privilege Escalation via Redis Server Access
CVSS 9.0
CVE-2024-4765
HIGH
Firefox < 126.0 for Android - Arbitrary Code Execution via Manifest Hash Collision
CVSS 8.1
CVE-2024-25968
MEDIUM
Dell PowerScale OneFS 8.2.x-9.7.0.2 - Unauthenticated Information Disclosure via Broken Cryptographic Algorithm
CVSS 5.9
CVE-2024-33663
MEDIUM
python-jose < 3.3.0 - Algorithm Confusion with OpenSSH ECDSA Keys
CVSS 6.5
CVE-2024-29056
MEDIUM
Windows Server 2008/2012/2016/2019/2022/23H2 Elevation of Privilege via Broken Cryptographic Algorithm
CVSS 4.3
CVE-2024-25963
MEDIUM
Dell PowerScale OneFS 8.2.2.x-9.5.0.x - Unauthenticated Information Disclosure via Broken Cryptographic Algorithm
CVSS 5.9
Details
Vulnerabilities
687
Exploit Likelihood
High