CWE-331

Insufficient Entropy

Parent: CWE-330 - Use of Insufficiently Random Values

The product uses an algorithm or scheme that produces insufficient entropy, leaving patterns or clusters of values that are more likely to occur than others.

124 vulnerabilities with CWE-331
CVE-2023-46648 HIGH
GitHub Enterprise Server <3.8.12-3.11.1 - Info Disclosure
CVSS 8.3
CVE-2023-26154 MEDIUM
PubNub <7.4.0, <6.19.0, <7.3.0, <6.1.0, <5.3.0, <0.4.0 - Path Trave...
CVSS 5.9
CVE-2023-31176 HIGH
SEL-451 - Info Disclosure
CVSS 7.5
CVE-2023-31582 HIGH
jose4j <v0.9.3 - Info Disclosure
CVSS 7.5
CVE-2023-34973 LOW
QNAP - Info Disclosure
CVSS 3.1
CVE-2023-4344 CRITICAL
Broadcom RAID Controller - Info Disclosure
CVSS 9.8
CVE-2023-38357 MEDIUM
RWS WorldServer <11.7.3 - Info Disclosure
CVSS 5.3
CVE-2023-36610 MEDIUM
TBox RTUs - Info Disclosure
CVSS 5.9
CVE-2023-3325 HIGH
CMS Commander <2.287 - Auth Bypass
CVSS 8.1
CVE-2023-20107 HIGH
Cisco ASA/FTD - Cryptographic Collision
CVSS 7.5
CVE-2022-43755 HIGH
SUSE Rancher <2.6.10-2.7.1 - Info Disclosure
CVSS 7.1
CVE-2022-20941 MEDIUM
Cisco Secure Firewall Management Center - Missing Authorization
CVSS 5.3
CVE-2022-34746 MEDIUM
Zyxel GS1900 <V2.70 - Info Disclosure
CVSS 5.9
CVE-2022-33989 MEDIUM
dproxy-nexgen - Info Disclosure
CVSS 5.3
CVE-2022-34294 CRITICAL
totd 1.5.3 - Info Disclosure
CVSS 9.8
CVE-2022-37401 HIGH
Apache OpenOffice <4.1.13 - Info Disclosure
CVSS 8.8
CVE-2022-33738 HIGH
OpenVPN Access Server <2.11 - Info Disclosure
CVSS 7.5
CVE-2022-31034 HIGH
Argo CD <v0.11.0 - Info Disclosure
CVSS 8.3
CVE-2022-33756 HIGH
CA Automic Automation <12.3 - Info Disclosure
CVSS 7.5
CVE-2021-4238 CRITICAL
RandomAlphaNumeric - Info Disclosure
CVSS 9.1
CVE-2021-4241 LOW
phpservermon - Info Disclosure
CVSS 2.6
CVE-2021-4240 LOW
phpservermon - Predictable Algorithm
CVSS 2.6
CVE-2021-41615 CRITICAL
GoAhead WebServer <2.1.8 - Info Disclosure
CVSS 9.8
CVE-2021-22799 LOW
Schneider Electric Software Update <2.5.1 - SSRF
CVSS 3.8
CVE-2021-36294 CRITICAL
Dell VNX2 OE for File <8.1.21.266 - Auth Bypass
CVSS 9.8
Details
Vulnerabilities 124