CWE-798

High likelihood

Use of Hard-coded Credentials

Parent: CWE-1391 - Use of Weak Credentials

The product contains hard-coded credentials, such as a password or cryptographic key.

1,755 vulnerabilities with CWE-798
CVE-2024-28812 HIGH
Infinera hiT 7300 5.60.50 - Unauthenticated Remote Code Execution via Hardcoded SSH Credentials
CVSS 8.8
CVE-2024-28809 HIGH
Infinera hiT 7300 5.60.50 - Cleartext Storage of Sensitive Password in Firmware Update Packages
CVSS 8.8
CVE-2024-8450 HIGH
PLANET GS-4210-24P2S and GS-4210-24PL4C Firmware - Use of Hard-coded Credentials in SNMPv1 Service
CVSS 8.6
CVE-2024-8449 MEDIUM
PLANET Technology - Unauthenticated RCE
CVSS 6.8
CVE-2024-8448 HIGH
PLANET Technology - Command Injection
CVSS 8.8
CVE-2024-23958 MEDIUM
Autel MaxiCharger AC Elite Business C50 - Unauthenticated Bypass via BLE Hardcoded Credentials
CVSS 6.5
CVE-2024-43423 CRITICAL
ProGauge MAGLINK LX4 CONSOLE - Info Disclosure
CVSS 9.8
CVE-2024-45861 HIGH
Kastle Access Control System Firmware < 2024-05-01 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2024-45698 CRITICAL
D-Link DIR-X4860 Firmware - Unauthenticated OS Command Injection via Telnet Service
CVSS 9.8
CVE-2024-6656 CRITICAL
TNB Mobile Solutions Cockpit Software <2.13 - Info Disclosure
CVSS 9.8
CVE-2024-28990 MEDIUM
SolarWinds Access Rights Manager < 2024.3.1 - Authentication Bypass via Hard-coded Credentials
CVSS 6.3
CVE-2024-39582 LOW
Dell PowerScale InsightIQ 5.0 - Use of Hard-coded Credentials
CVSS 2.3
CVE-2024-39585 HIGH
Dell SmartFabric OS10 10.5.5.4-10.5.5.10 and 10.5.6.x - Use of Hard-coded Password
CVSS 7.9
CVE-2024-20439 CRITICAL KEV
Cisco Smart Licensing Utility - Auth Bypass
CVSS 9.8
CVE-2024-35118 MEDIUM
IBM MaaS360 for Android 6.31-8.60 - Use of Hard-coded Credentials
CVSS 4.6
CVE-2024-6633 CRITICAL
FileCatalyst Workflow - Info Disclosure
CVSS 9.8
CVE-2024-8162 CRITICAL
TOTOLINK T10 AC1200 4.1.8cu.5207 - Hard-coded Credentials
CVSS 9.8
CVE-2024-8135 MEDIUM
gotribe < 2024-08-23 - Use of Hard-coded Credentials in Sign Function
CVSS 6.3
CVE-2024-45165 MEDIUM
UCI IDOL 2 < 2.12 - Use of Hard-coded Credentials for Message Encryption
CVSS 5.3
CVE-2024-28987 CRITICAL KEV
SolarWinds Web Help Desk - Hardcoded Credential
CVSS 9.1
CVE-2024-8005 HIGH
demozx gf_cms <1.0.2 - Hard-coded Credentials
CVSS 7.3
CVE-2024-42638 CRITICAL
H3C Magic B1ST v100R012 - Info Disclosure
CVSS 9.8
CVE-2024-42637 CRITICAL
H3C R3010 v100R002L02 - Use of Hard-coded Credentials in /etc/shadow
CVSS 9.8
CVE-2024-31798 MEDIUM
GNCC's GC2 Indoor Security Camera 1080P - Info Disclosure
CVSS 6.8
CVE-2024-41161 HIGH
Vonets Industrial WiFi Bridge Firmware < 3.3.23.6.9 - Unauthenticated Authentication Bypass via Hard-coded Credentials
CVSS 7.5
Details
Vulnerabilities 1,755
Exploit Likelihood High