The product contains hard-coded credentials, such as a password or cryptographic key.
1,713 vulnerabilities with CWE-798
CVE-2023-47800
CRITICAL
Natus NeuroWorks and SleepWorks < 8.4 GMA3 - Use of Hard-coded Credentials in MSSQL sa Account
CVSS 9.8
CVE-2023-41137
HIGH
AppsAnywhere Client - Use of Hard-coded Cryptographic Key
CVSS 8.0
CVE-2023-5777
CRITICAL
Weintek EasyBuilder Pro < 6.07.02 - Unauthenticated Private Key Exposure
CVSS 9.8
CVE-2023-31579
CRITICAL
Dromara Lamp-Cloud <3.8.1 - Auth Bypass
CVSS 9.8
CVE-2023-45499
CRITICAL
Vinchin Backup & Recovery 5.0-7.0 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2023-46102
HIGH
Bosch Rexroth ctrlX HMI Web Panel WR2107/WR2110/WR2115 Firmware - Remote Code Execution via Hard-coded DES Key
CVSS 8.8
CVE-2023-42492
HIGH
EisBaer Scada < 3.0.6433.19643 - Use of Hard-coded Cryptographic Key
CVSS 7.1
CVE-2023-41372
HIGH
Boschrexroth ctrlX HMI Web Panel - Unauthorized Server Settings Modification
CVSS 7.8
CVE-2023-31581
CRITICAL
Dromara Sureness <v1.0.8 - Info Disclosure
CVSS 9.8
CVE-2023-26219
HIGH
TIBCO Hawk <6.2.2 - Info Disclosure
CVSS 7.4
CVE-2023-41713
HIGH
SonicOS < 7.0.1-5145 - Use of Hard-coded Password in dynHandleBuyToolbar Demo Function
CVSS 7.5
CVE-2023-33836
MEDIUM
IBM Security Verify Governance 10.0 - Info Disclosure
CVSS 5.3
CVE-2023-45194
MEDIUM
MRL Mr-gm3-d Firmware < 1.04.00 - Hard-coded Credentials
CVSS 4.3
CVE-2023-30801
CRITICAL
qBittorrent <= 4.5.5 - Unauthenticated Remote Code Execution via Default Credentials
CVSS 9.8
CVE-2023-45226
HIGH
F5 BIG-IP Next Service Proxy for Kubernetes - Use of Hard-coded Credentials in TMM Debug Containers
CVSS 7.4
CVE-2023-36380
CRITICAL
CP-8031 MASTER MODULE < CPCI85 V05.11 - Info Disclosure
CVSS 9.8
CVE-2023-2306
CRITICAL
Qognify NiceVision <3.1 - Info Disclosure
CVSS 10.0
CVE-2023-20101
CRITICAL
Cisco Emergency Responder - Auth Bypass
CVSS 9.8
CVE-2023-5318
HIGH
microweber < 2.0 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2023-20034
HIGH
Cisco SD-WAN vManage - Info Disclosure
CVSS 7.5
CVE-2023-41878
MEDIUM
MeterSphere < 2.10.7 - Use of Hard-coded Credentials in Selenium VNC Config
CVSS 4.6
CVE-2023-43637
HIGH
lfedge/eve < 7.10 - Use of Hard-coded Cryptographic Key in Vault Key Derivation
CVSS 7.8
CVE-2023-5074
CRITICAL
D-Link D-View 8 <v2.0.1.28 - Auth Bypass
CVSS 9.8
CVE-2023-31808
HIGH
Technicolor TG670 <10.5.N.9 - Info Disclosure
CVSS 7.2
CVE-2023-41030
MEDIUM
Juplink RX4-1500 <V1.0.5 - Info Disclosure
CVSS 6.3
Details
Vulnerabilities
1,713
Exploit Likelihood
High