The product contains hard-coded credentials, such as a password or cryptographic key.
1,712 vulnerabilities with CWE-798
CVE-2024-9643
CRITICAL
Four-Faith F3x36 Firmware v2.0.0 - Authentication Bypass via Hard-Coded Credentials
CVSS 9.8
CVE-2024-53357
HIGH
EasyVirt CO2Scope < 1.3.0 and DCScope < 8.6.0 - Authenticated SQL Injection via User and Group Management APIs
CVSS 7.5
CVE-2024-53356
CRITICAL
EasyVirt CO2Scope < 1.3.0 and DCScope < 8.6.0 - Use of Hard-coded Credentials for JWT Generation
CVSS 9.8
CVE-2024-50692
MEDIUM
SunGrow WiNet-S < 200.001.00.p027 - Use of Hard-coded MQTT Credentials
CVSS 5.4
CVE-2024-50690
MEDIUM
SunGrow WiNet-S < 200.001.00.p027 - Use of Hard-coded Credentials
CVSS 6.5
CVE-2024-55927
HIGH
Xerox Workplace Suite - Auth Bypass
CVSS 7.6
CVE-2024-11147
HIGH
ECOVACS Robot Lawnmowers and Vacuums - Use of Hard-coded Credentials
CVSS 7.6
CVE-2024-45832
MEDIUM
Ossur Mobile Logic Application < 1.5.5 - Use of Hard-coded Credentials
CVSS 4.3
CVE-2024-48126
CRITICAL
HI-SCAN 6040i Hitrax HX-03-19-I - Info Disclosure
CVSS 9.8
CVE-2024-50564
LOW
Fortinet FortiClientWindows <7.4.0 - Info Disclosure
CVSS 3.3
CVE-2024-57811
CRITICAL
Eaton X303 <3.5.17 - Privilege Escalation
CVSS 9.1
CVE-2024-46505
CRITICAL
Infoblox BloxOne v2.4 - Info Disclosure
CVSS 9.1
CVE-2024-28778
MEDIUM
IBM Cognos Controller 11.0.0-11.0.1 and IBM Controller 11.1.0 - Exposure of Hard-coded Artifactory API Keys
CVSS 6.5
CVE-2024-4996
CRITICAL
Wapro ERP <8.90.0 - Info Disclosure
CVSS 9.8
CVE-2024-55557
CRITICAL
Weasis 4.5.1 - Use of Hard-coded Credentials in ProxyPrefView
CVSS 9.8
CVE-2024-48007
MEDIUM
Dell RecoverPoint for Virtual Machines 6.0.x - Unauthenticated Use of Hard-coded Credentials
CVSS 5.3
CVE-2024-28146
HIGH
Scan2Net < 7.42 - Use of Hard-coded Credentials
CVSS 8.4
CVE-2024-54749
HIGH
Ubiquiti U7-Pro 7.0.35 - Info Disclosure
CVSS 7.5
CVE-2024-54750
CRITICAL
Ubiquiti U6-LR 6.6.65 - Info Disclosure
CVSS 9.8
CVE-2024-45319
MEDIUM
SonicWall SMA100 SSLVPN <10.2.1.13-72sv - Auth Bypass
CVSS 6.3
CVE-2024-51551
CRITICAL
ABB ASPECT/NEXUS/MATRIX Firmware < 3.07.02 - Unauthenticated Default Credential Access
CVSS 10.0
CVE-2024-53614
MEDIUM
Thinkware Cloud APK <4.3.46 - Code Injection
CVSS 6.5
CVE-2024-41777
HIGH
IBM Cognos Controller 11.0.0 and 11.0.1 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2024-53484
HIGH
Ever Traduora <0.20.0 - Privilege Escalation
CVSS 8.8
CVE-2024-49806
CRITICAL
IBM Security Verify Access Appliance <10.0.9 - Info Disclosure
CVSS 9.4
Details
Vulnerabilities
1,712
Exploit Likelihood
High