The product contains hard-coded credentials, such as a password or cryptographic key.
1,755 vulnerabilities with CWE-798
CVE-2024-21764
CRITICAL
Rapid SCADA < 5.8.4 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2024-1039
CRITICAL
Gessler GmbH WEB-MASTER Firmware - Improper Authentication via Hardcoded Credentials
CVSS 9.8
CVE-2024-24324
CRITICAL
TOTOLINK A8000RU v7.1cu.643_B20200521 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2024-23619
CRITICAL
IBM Merge Healthcare eFilm Workstation < 4.2 - Unauthenticated Hardcoded Credential Use
CVSS 9.8
CVE-2024-23453
MEDIUM
spooncast/spoon 7.11.1-8.6.0 - Hard-coded Credentials Exposure
CVSS 5.5
CVE-2024-23842
HIGH
Hitron LGUVR-16H Firmware 1.02-4.02 - Unauthenticated Network Attack via Default Credentials
CVSS 7.4
CVE-2024-22772
HIGH
Hitron Systems DVR LGUVR-8H <4.02 - Info Disclosure
CVSS 7.4
CVE-2024-22771
HIGH
Hitron Systems DVR LGUVR-4H <4.02 - Info Disclosure
CVSS 7.4
CVE-2024-22770
HIGH
Hitron Systems DVR HVR-16781 <4.02 - Info Disclosure
CVSS 7.4
CVE-2024-22769
HIGH
Hitron Systems DVR HVR-8781 <4.02 - Info Disclosure
CVSS 7.4
CVE-2024-22768
HIGH
Hitron Systems DVR HVR-4781 <4.02 - Info Disclosure
CVSS 7.4
CVE-2024-23726
HIGH
Ubee DDW365 XCNDDW365 - Use of Hard-coded Credentials via Predictable WPA2 PSK
CVSS 8.8
CVE-2024-23687
CRITICAL
FOLIO mod-data-export-spring <1.5.4 and 2.0.0-2.0.2 - Unauthenticated Use of Hard-coded Credentials
CVSS 9.1
CVE-2024-23685
MEDIUM
mod-remote-storage <1.7.2 and 2.0.0-2.0.3 - Unauthenticated Unauthorized Data Access via Hard-coded Credentials
CVSS 5.3
CVE-2023-27573
CRITICAL
netbox-docker < 2.5.0 - Use of Default Credentials
CVSS 9.0
CVE-2023-53983
CRITICAL
Anevia Flamingo XL/XS <3.6.20 - Privilege Escalation
CVSS 9.8
CVE-2023-37936
CRITICAL
Fortinet FortiSwitch <7.4.0 - Code Injection
CVSS 9.8
CVE-2023-51638
CRITICAL
Allegra < 7.5.1 - Unauthenticated Authentication Bypass via Hard-coded Database Credentials
CVSS 9.8
CVE-2023-27584
CRITICAL
Dragonfly < 2.0.9 and v2 >=2.1.0-alpha.0 <2.1.0-beta.1 - Authentication Bypass via Hard-coded JWT Secret Key
CVSS 9.8
CVE-2023-41612
HIGH
Victure PC420 1.1.39 - Info Disclosure
CVSS 8.8
CVE-2023-41611
MEDIUM
Victure PC420 1.1.39 - Info Disclosure
CVSS 6.5
CVE-2023-41610
HIGH
Victure PC420 1.1.39 - Info Disclosure
CVSS 8.8
CVE-2023-20512
LOW
AMD Radeon RX 6000 and PRO W6000 Series Graphics Cards - Hardcoded AES Key Exposure in PMFW
CVSS 1.9
CVE-2023-46685
CRITICAL
LevelOne WBR-6013 - Command Injection
CVSS 9.8
CVE-2023-41919
CRITICAL
Kiloview P2 and P1 Firmware < 4.8.2605 - Use of Hard-coded Credentials
CVSS 9.8
Details
Vulnerabilities
1,755
Exploit Likelihood
High