CWE-521

Weak Password Requirements

Parent: CWE-1391 - Use of Weak Credentials

The product does not require that users should have strong passwords.

254 vulnerabilities with CWE-521
CVE-2024-0347 LOW
SourceCodester Engineers Online Portal 1.0 - Info Disclosure
CVSS 3.7
CVE-2024-0188 LOW
RRJ Nueva Ecija Engineer Online Portal 1.0 - Info Disclosure
CVSS 3.1
CVE-2023-49883 MEDIUM
IBM Transformation Extender Advanced 10.0.1 - Info Disclosure
CVSS 5.9
CVE-2023-27272 LOW
IBM Aspera Console <3.4.4 - Info Disclosure
CVSS 3.1
CVE-2023-37398 MEDIUM
IBM Aspera Faspex <5.0.10 - Info Disclosure
CVSS 5.9
CVE-2023-35907 MEDIUM
IBM Aspera Faspex <5.0.10 - Info Disclosure
CVSS 5.9
CVE-2023-41923 HIGH
Web App <version> - Info Disclosure
CVSS 7.2
CVE-2023-50305 MEDIUM
IBM Engineering Requirements Management DOORS 9.7.2.7 - Info Disclo...
CVSS 5.1
CVE-2023-38369 MEDIUM
IBM Security Access Manager Container <10.0.6.1 - Info Disclosure
CVSS 6.2
CVE-2023-43016 HIGH
IBM Security Verify Access - Auth Bypass
CVSS 7.3
CVE-2023-49238 CRITICAL
Gradle Enterprise <2023.1 - Privilege Escalation
CVSS 9.8
CVE-2023-7053 LOW
PHPGurukul Online Notes Sharing System 1.0 - Weak Password Requirem...
CVSS 3.1
CVE-2023-24049 CRITICAL
Connectize AC21000 G6 - Privilege Escalation
CVSS 9.8
CVE-2023-29974 CRITICAL
Pfsense CE <2.6.0 - Info Disclosure
CVSS 9.8
CVE-2023-41353 HIGH
Chunghwa Telecom NOKIA G-040W-Q - Info Disclosure
CVSS 8.8
CVE-2023-37503 HIGH
HCL Compass - Info Disclosure
CVSS 8.1
CVE-2023-37756 CRITICAL
I-doit pro <25 - Info Disclosure
CVSS 9.8
CVE-2023-40707 HIGH
SNAP PAC S1 Firmware <R10.3b - Info Disclosure
CVSS 8.6
CVE-2023-4125 HIGH
answerdev/answer <1.1.0 - Info Disclosure
CVSS 8.8
CVE-2023-34995 HIGH
PiiGAB M-Bus - Info Disclosure
CVSS 7.5
CVE-2023-3089 HIGH
Red Hat OpenShift Container Platform - Info Disclosure
CVSS 7.0
CVE-2023-34240 MEDIUM
Cloudexplorer-lite <1.2.0 - Info Disclosure
CVSS 6.5
CVE-2023-3423 HIGH
GitHub cloudexplorer-dev/cloudexplorer-lite <1.2.0 - Info Disclosure
CVSS 8.8
CVE-2023-2060 HIGH
Mitsubishi Electric Corporation MELSEC iQ-R Series EtherNet/IP - In...
CVSS 7.5
CVE-2023-31098 CRITICAL
Apache InLong <1.7.0 - Info Disclosure
CVSS 9.8
Details
Vulnerabilities 254