CWE-798

High likelihood

Use of Hard-coded Credentials

Parent: CWE-1391 - Use of Weak Credentials

The product contains hard-coded credentials, such as a password or cryptographic key.

1,663 vulnerabilities with CWE-798
CVE-2026-0622 MEDIUM
Open5gs < 2.7.6 - Hard-coded Credentials
CVSS 6.5
CVE-2026-1221 CRITICAL
PrismX MX100 AP - Info Disclosure
CVSS 9.8
CVE-2026-22911 MEDIUM
Sick Tdc-x401gl Firmware - Insufficiently Protected Credentials
CVSS 5.3
CVE-2025-10681 HIGH
Gardyn Mobile Application and Device Firmware Use Hard-coded Credentials
CVSS 8.6
CVE-2025-9497 CRITICAL
Hardcoded Upgrade Decryption Passwords
CVSS 9.8
CVE-2025-55263 HIGH
HCL Aftermarket DPC is affected by Hardcoded Sensitive Data
CVSS 7.3
CVE-2025-55262 HIGH
HCL Aftermarket DPC is affected by SQL Injection
CVSS 8.3
CVE-2025-12708 MEDIUM
Multiple Vulnerabilities in IBM Concert Software
CVSS 6.2
CVE-2025-15605 HIGH
Hardcoded Cryptographic Key in Configuration Encryption Mechanism on TP-Link Archer NX200, NX210, NX500 and NX600
CVSS 7.3
CVE-2025-41710 MEDIUM
FTP Server - Auth Bypass
CVSS 6.5
CVE-2025-13957 HIGH
SOCKS Proxy - Info Disclosure & RCE
CVE-2025-14923 MEDIUM
IBM WebSphere Liberty 17.0.0.3-26.0.0.2 - Auth Bypass
CVSS 4.7
CVE-2025-1242 CRITICAL
Gardyn IoT Hub - Info Disclosure
CVSS 9.1
CVE-2025-13776 HIGH
Finka Programs - Auth Bypass
CVSS 7.1
CVE-2025-67304 CRITICAL
Ruckus Network Director <4.5.0.54 - Auth Bypass
CVSS 9.8
CVE-2025-33089 MEDIUM
IBM Concert 1.0.0-2.1.0 - Auth Bypass
CVSS 6.5
CVE-2025-69971 CRITICAL
Frangoteam Fuxa - Hard-coded Credentials
CVSS 9.8
CVE-2025-40537 HIGH
Solarwinds Web Help Desk < 2026.1 - Hard-coded Credentials
CVSS 7.5
CVE-2025-59107 HIGH
Dormakaba FWServiceTool - Info Disclosure
CVE-2025-59096 MEDIUM
U9ExosAdmin.exe - Info Disclosure
CVE-2025-59095 MEDIUM
exos 9300 - Info Disclosure
CVE-2025-59092 HIGH
exos 9300 - Info Disclosure
CVE-2025-59091 CRITICAL
Kaba exos 9300 - Info Disclosure
CVE-2025-58744 HIGH
Milner ImageDirector Capture <7.6.3.25808 - Default Credentials
CVSS 7.5
CVE-2025-14115 HIGH
IBM Sterling Connect:Direct for UNIX Container - Info Disclosure
CVSS 8.4
Details
Vulnerabilities 1,663
Exploit Likelihood High