CWE-330

High likelihood

Use of Insufficiently Random Values

Parent: CWE-693 - Protection Mechanism Failure

The product uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.

364 vulnerabilities with CWE-330
CVE-2024-41708 HIGH
AdaCore ada_web_services <20.0 - Privilege Escalation
CVSS 7.5
CVE-2024-6348 HIGH
Nissan Altima 2022 - Info Disclosure
CVSS 7.5
CVE-2024-42475 MEDIUM
Nim OAuth <0.11 - CSRF
CVSS 6.5
CVE-2024-7659 LOW
projectsend <r1720 - Info Disclosure
CVSS 3.7
CVE-2024-42165 MEDIUM
FIWARE Keyrock <= 8.4 - Info Disclosure
CVSS 6.3
CVE-2024-42164 MEDIUM
FIWARE Keyrock <= 8.4 - Info Disclosure
CVSS 4.3
CVE-2024-21460 HIGH
Qualcomm Fastconnect 6900 Firmware - Information Disclosure
CVSS 7.1
CVE-2024-25943 HIGH
iDRAC9 <7.00.00.172-7.10.50.00 - RCE
CVSS 7.6
CVE-2024-5868 MEDIUM
WooCommerce - Social Login <2.6.2 - Auth Bypass
CVSS 6.5
CVE-2024-35292 HIGH
SIMATIC S7-200 SMART CPU - Info Disclosure
CVSS 8.2
CVE-2024-5149 MEDIUM
BuddyForms <2.8.9 - Auth Bypass
CVSS 6.5
CVE-2024-36389 CRITICAL
MileSight DeviceHub - Auth Bypass
CVSS 9.8
CVE-2024-4185 HIGH
Customer Email Verification for WooCommerce <2.7.4 - Auth Bypass
CVSS 8.1
CVE-2024-28013 MEDIUM
NEC Corporation Various Products - Insufficiently Random Values
CVSS 5.3
CVE-2024-1631 CRITICAL
Ed25519KeyIdentity - Insecure Seed Generation
CVSS 9.1
CVE-2024-21495 MEDIUM
github.com/greenpau/caddy-security <1.0.42 - Info Disclosure
CVSS 6.5
CVE-2024-0761 HIGH
WordPress File Manager <7.2.1 - Info Disclosure
CVSS 8.1
CVE-2024-23688 MEDIUM
Consensys Discovery <0.4.5 - Info Disclosure
CVSS 5.3
CVE-2023-6799 MEDIUM
WP Reset - Info Disclosure
CVSS 5.9
CVE-2023-46740 MEDIUM
CubeFS <3.3.1 - Privilege Escalation
CVSS 6.5
CVE-2023-32831 MEDIUM
Mediatek Software Development Kit < 7.6.7.1 - Information Disclosure
CVSS 5.5
CVE-2023-4462 LOW
Poly Trio and CCX Devices - Information Disclosure via Weak Random Values
CVSS 3.7
CVE-2023-6376 MEDIUM
Henschen & Associates - Info Disclosure
CVSS 5.3
CVE-2023-48056 HIGH
PyPinkSign v0.5.1 - Info Disclosure
CVSS 7.5
CVE-2023-29332 HIGH
Microsoft Azure Kubernetes Service - Privilege Escalation
CVSS 7.5
Details
Vulnerabilities 364
Exploit Likelihood High