CWE-338

Medium likelihood

Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

Parent: CWE-330 - Use of Insufficiently Random Values

The product uses a Pseudo-Random Number Generator (PRNG) in a security context, but the PRNG's algorithm is not cryptographically strong.

171 vulnerabilities with CWE-338
CVE-2024-25389 HIGH
RT-Thread <5.0.2 - Info Disclosure
CVSS 7.5
CVE-2024-23660 HIGH
Binance Trust Wallet <0.0.4 - Info Disclosure
CVSS 7.5
CVE-2023-31305 LOW
PMFW - Info Disclosure
CVSS 1.9
CVE-2023-50059 MEDIUM
Galxe 1.0 - Info Disclosure
CVSS 5.3
CVE-2023-45237 MEDIUM
EDK2 - Info Disclosure
CVSS 5.3
CVE-2023-45236 MEDIUM
Tianocore Edk2 < 202311 - Information Disclosure
CVSS 5.8
CVE-2023-48224 HIGH
Fides - Info Disclosure
CVSS 8.2
CVE-2023-27791 HIGH
IXP Data Easy Install 6.6.148840 - Privilege Escalation
CVSS 8.1
CVE-2023-39910 HIGH
Libbitcoin Explorer <3.6.0 - Info Disclosure
CVSS 7.5
CVE-2023-36993 CRITICAL
TravianZ <8.3.4-8.3.3 - Info Disclosure
CVSS 9.8
CVE-2023-34363 MEDIUM
Progress DataDirect Connect for ODBC <08.02.2770 - Info Disclosure
CVSS 5.9
CVE-2023-32549 MEDIUM
Landscape - Info Disclosure
CVSS 6.8
CVE-2023-2884 CRITICAL
CBOT Chatbot <4.0.3.4-4.0.3.7 - Signature Spoofing
CVSS 9.8
CVE-2023-31290 MEDIUM
Trust Wallet Core <3.1.1 - Info Disclosure
CVSS 5.9
CVE-2023-28835 LOW
Nextcloud <24.0.10-25.0.4 - Info Disclosure
CVSS 3.5
CVE-2023-28395 HIGH
Osprey Pump Controller <1.01 - Auth Bypass
CVSS 8.3
CVE-2023-24828 HIGH
Onedev <7.9.12 - Privilege Escalation
CVSS 8.1
CVE-2022-26943 HIGH
Motorola MTM5000 - Info Disclosure
CVSS 8.8
CVE-2022-48506 LOW
Dominion Voting Systems ImageCast - Info Disclosure
CVSS 2.4
CVE-2022-45782 HIGH
dotCMS core <5.3.8.15,22.10.1 - Info Disclosure
CVSS 8.8
CVE-2022-23472 MEDIUM
Passeo <1.0.5 - Info Disclosure
CVSS 5.9
CVE-2022-35255 CRITICAL
Node.js 18 - Info Disclosure
CVSS 9.1
CVE-2022-44796 CRITICAL
Object First Ootbi <1.0.7.712 - Auth Bypass
CVSS 9.8
CVE-2022-41210 MEDIUM
SAP Customer Data Cloud Gigya mobile app for Android <7.4 - Info Di...
CVSS 5.2
CVE-2022-40769 HIGH
profanity <1.60 - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 171
Exploit Likelihood Medium