The product contains hard-coded credentials, such as a password or cryptographic key.
1,755 vulnerabilities with CWE-798
CVE-2024-28812
HIGH
Infinera hiT 7300 5.60.50 - Unauthenticated Remote Code Execution via Hardcoded SSH Credentials
CVSS 8.8
CVE-2024-28809
HIGH
Infinera hiT 7300 5.60.50 - Cleartext Storage of Sensitive Password in Firmware Update Packages
CVSS 8.8
CVE-2024-8450
HIGH
PLANET GS-4210-24P2S and GS-4210-24PL4C Firmware - Use of Hard-coded Credentials in SNMPv1 Service
CVSS 8.6
CVE-2024-8449
MEDIUM
PLANET Technology - Unauthenticated RCE
CVSS 6.8
CVE-2024-8448
HIGH
PLANET Technology - Command Injection
CVSS 8.8
CVE-2024-23958
MEDIUM
Autel MaxiCharger AC Elite Business C50 - Unauthenticated Bypass via BLE Hardcoded Credentials
CVSS 6.5
CVE-2024-43423
CRITICAL
ProGauge MAGLINK LX4 CONSOLE - Info Disclosure
CVSS 9.8
CVE-2024-45861
HIGH
Kastle Access Control System Firmware < 2024-05-01 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2024-45698
CRITICAL
D-Link DIR-X4860 Firmware - Unauthenticated OS Command Injection via Telnet Service
CVSS 9.8
CVE-2024-6656
CRITICAL
TNB Mobile Solutions Cockpit Software <2.13 - Info Disclosure
CVSS 9.8
CVE-2024-28990
MEDIUM
SolarWinds Access Rights Manager < 2024.3.1 - Authentication Bypass via Hard-coded Credentials
CVSS 6.3
CVE-2024-39582
LOW
Dell PowerScale InsightIQ 5.0 - Use of Hard-coded Credentials
CVSS 2.3
CVE-2024-39585
HIGH
Dell SmartFabric OS10 10.5.5.4-10.5.5.10 and 10.5.6.x - Use of Hard-coded Password
CVSS 7.9
CVE-2024-20439
CRITICAL
KEV
Cisco Smart Licensing Utility - Auth Bypass
CVSS 9.8
CVE-2024-35118
MEDIUM
IBM MaaS360 for Android 6.31-8.60 - Use of Hard-coded Credentials
CVSS 4.6
CVE-2024-6633
CRITICAL
FileCatalyst Workflow - Info Disclosure
CVSS 9.8
CVE-2024-8162
CRITICAL
TOTOLINK T10 AC1200 4.1.8cu.5207 - Hard-coded Credentials
CVSS 9.8
CVE-2024-8135
MEDIUM
gotribe < 2024-08-23 - Use of Hard-coded Credentials in Sign Function
CVSS 6.3
CVE-2024-45165
MEDIUM
UCI IDOL 2 < 2.12 - Use of Hard-coded Credentials for Message Encryption
CVSS 5.3
CVE-2024-28987
CRITICAL
KEV
SolarWinds Web Help Desk - Hardcoded Credential
CVSS 9.1
CVE-2024-8005
HIGH
demozx gf_cms <1.0.2 - Hard-coded Credentials
CVSS 7.3
CVE-2024-42638
CRITICAL
H3C Magic B1ST v100R012 - Info Disclosure
CVSS 9.8
CVE-2024-42637
CRITICAL
H3C R3010 v100R002L02 - Use of Hard-coded Credentials in /etc/shadow
CVSS 9.8
CVE-2024-31798
MEDIUM
GNCC's GC2 Indoor Security Camera 1080P - Info Disclosure
CVSS 6.8
CVE-2024-41161
HIGH
Vonets Industrial WiFi Bridge Firmware < 3.3.23.6.9 - Unauthenticated Authentication Bypass via Hard-coded Credentials
CVSS 7.5
Details
Vulnerabilities
1,755
Exploit Likelihood
High