CWE-798

High likelihood

Use of Hard-coded Credentials

Parent: CWE-1391 - Use of Weak Credentials

The product contains hard-coded credentials, such as a password or cryptographic key.

1,713 vulnerabilities with CWE-798
CVE-2023-47800 CRITICAL
Natus NeuroWorks and SleepWorks < 8.4 GMA3 - Use of Hard-coded Credentials in MSSQL sa Account
CVSS 9.8
CVE-2023-41137 HIGH
AppsAnywhere Client - Use of Hard-coded Cryptographic Key
CVSS 8.0
CVE-2023-5777 CRITICAL
Weintek EasyBuilder Pro < 6.07.02 - Unauthenticated Private Key Exposure
CVSS 9.8
CVE-2023-31579 CRITICAL
Dromara Lamp-Cloud <3.8.1 - Auth Bypass
CVSS 9.8
CVE-2023-45499 CRITICAL
Vinchin Backup & Recovery 5.0-7.0 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2023-46102 HIGH
Bosch Rexroth ctrlX HMI Web Panel WR2107/WR2110/WR2115 Firmware - Remote Code Execution via Hard-coded DES Key
CVSS 8.8
CVE-2023-42492 HIGH
EisBaer Scada < 3.0.6433.19643 - Use of Hard-coded Cryptographic Key
CVSS 7.1
CVE-2023-41372 HIGH
Boschrexroth ctrlX HMI Web Panel - Unauthorized Server Settings Modification
CVSS 7.8
CVE-2023-31581 CRITICAL
Dromara Sureness <v1.0.8 - Info Disclosure
CVSS 9.8
CVE-2023-26219 HIGH
TIBCO Hawk <6.2.2 - Info Disclosure
CVSS 7.4
CVE-2023-41713 HIGH
SonicOS < 7.0.1-5145 - Use of Hard-coded Password in dynHandleBuyToolbar Demo Function
CVSS 7.5
CVE-2023-33836 MEDIUM
IBM Security Verify Governance 10.0 - Info Disclosure
CVSS 5.3
CVE-2023-45194 MEDIUM
MRL Mr-gm3-d Firmware < 1.04.00 - Hard-coded Credentials
CVSS 4.3
CVE-2023-30801 CRITICAL
qBittorrent <= 4.5.5 - Unauthenticated Remote Code Execution via Default Credentials
CVSS 9.8
CVE-2023-45226 HIGH
F5 BIG-IP Next Service Proxy for Kubernetes - Use of Hard-coded Credentials in TMM Debug Containers
CVSS 7.4
CVE-2023-36380 CRITICAL
CP-8031 MASTER MODULE < CPCI85 V05.11 - Info Disclosure
CVSS 9.8
CVE-2023-2306 CRITICAL
Qognify NiceVision <3.1 - Info Disclosure
CVSS 10.0
CVE-2023-20101 CRITICAL
Cisco Emergency Responder - Auth Bypass
CVSS 9.8
CVE-2023-5318 HIGH
microweber < 2.0 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2023-20034 HIGH
Cisco SD-WAN vManage - Info Disclosure
CVSS 7.5
CVE-2023-41878 MEDIUM
MeterSphere < 2.10.7 - Use of Hard-coded Credentials in Selenium VNC Config
CVSS 4.6
CVE-2023-43637 HIGH
lfedge/eve < 7.10 - Use of Hard-coded Cryptographic Key in Vault Key Derivation
CVSS 7.8
CVE-2023-5074 CRITICAL
D-Link D-View 8 <v2.0.1.28 - Auth Bypass
CVSS 9.8
CVE-2023-31808 HIGH
Technicolor TG670 <10.5.N.9 - Info Disclosure
CVSS 7.2
CVE-2023-41030 MEDIUM
Juplink RX4-1500 <V1.0.5 - Info Disclosure
CVSS 6.3
Details
Vulnerabilities 1,713
Exploit Likelihood High