CWE-330

High likelihood

Use of Insufficiently Random Values

Parent: CWE-693 - Protection Mechanism Failure

The product uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.

364 vulnerabilities with CWE-330
CVE-2021-31228 HIGH
HCC embedded InterNiche 4.0.1 - SSRF
CVSS 7.5
CVE-2021-0417 MEDIUM
In memory management driver - DoS
CVSS 5.5
CVE-2021-39249 MEDIUM
Invisioncommunity Invision Power Board < 4.6.5.1 - XSS
CVSS 6.1
CVE-2021-38606 CRITICAL
reNgine <0.5 - Path Traversal
CVSS 9.8
CVE-2021-3692 MEDIUM
yii2 - Info Disclosure
CVSS 5.3
CVE-2021-3689 HIGH
yii2 - Info Disclosure
CVSS 7.5
CVE-2021-25444 MEDIUM
keymaster <SMR AUG-2021 Release 1 - Info Disclosure
CVSS 5.5
CVE-2021-26098 MEDIUM
FortiSandbox <4.0.0 - Info Disclosure
CVSS 5.3
CVE-2021-27499 MEDIUM
Ypsomed mylife <1.7.2-1.7.5 - Info Disclosure
CVSS 5.9
CVE-2021-28674 MEDIUM
Solarwinds Orion Platform < 2020.2.5 - Incorrect Authorization
CVSS 5.4
CVE-2021-32791 MEDIUM
Apache mod_auth_openidc <2.4.9 - Cryptographic Issue
CVSS 5.9
CVE-2021-29480 MEDIUM
Ratpack <1.9.0 - Info Disclosure
CVSS 4.4
CVE-2021-27200 CRITICAL
WoWonder 3.0.4 - Code Injection
CVSS 9.8
CVE-2021-0466 HIGH
Android <10 - Info Disclosure
CVSS 7.5
CVE-2021-23020 MEDIUM
NAAS <3.10.0 - Info Disclosure
CVSS 5.5
CVE-2021-29499 HIGH
SIF - Info Disclosure
CVSS 7.5
CVE-2021-26909 LOW
Automox < 31 - Improper Access Control
CVSS 3.7
CVE-2021-27393 MEDIUM
Nucleus NET, ReadyStart V3 <V2013.08, Source Code - Info Disclosure
CVSS 5.3
CVE-2021-25677 MEDIUM
APOGEE PXC Compact/BACnet, Modular/BACnet, Nucleus NET, ReadyStart ...
CVSS 5.3
CVE-2021-28055 MEDIUM
Centreon-Web <20.10.0 - CSRF
CVSS 6.5
CVE-2021-21729 MEDIUM
ZTE Zxhn H168n Firmware - CSRF
CVSS 6.5
CVE-2021-25375 MEDIUM
Samsung Email <6.1.41.0 - Info Disclosure
CVSS 6.5
CVE-2021-3446 MEDIUM
libtpms <0.8.2 - Info Disclosure
CVSS 5.5
CVE-2021-28099 MEDIUM
Netflix OSS Hollow - Info Disclosure
CVSS 4.4
CVE-2021-22309 HIGH
Huawei Usg9500 Firmware - Information Disclosure
CVSS 7.5
Details
Vulnerabilities 364
Exploit Likelihood High