CWE-798

High likelihood

Use of Hard-coded Credentials

Parent: CWE-1391 - Use of Weak Credentials

The product contains hard-coded credentials, such as a password or cryptographic key.

1,712 vulnerabilities with CWE-798
CVE-2026-28777 CRITICAL
International Datacasting Corporation SFX2100 Satellite Receiver - Use of Hard-coded Credentials
CVSS 9.8
CVE-2026-28776 CRITICAL
International Datacasting SFX Series SuperFlex - Unauthenticated Remote Shell Access via Hardcoded Credentials
CVSS 9.8
CVE-2026-27167 NONE
Gradio 4.16.0-6.5.9 - Unauthenticated Hardcoded Credential Exposure via OAuth Mock Route
CVE-2026-27507 CRITICAL
Binardat 10G08-0800GSM V300SP10260209 - Auth Bypass
CVSS 9.8
CVE-2026-2702 LOW
Beetel 777VR1 <=01.00.09 - Auth Bypass
CVSS 3.1
CVE-2026-22769 CRITICAL KEV
Dell RecoverPoint <6.0.3.1 HF1 - Auth Bypass
CVSS 10.0
CVE-2026-23647 CRITICAL
Glory RBG-100 ISPK-08 - Auth Bypass
CVSS 9.8
CVE-2026-2616 HIGH
Beetel 777VR1 <=01.00.09 - Auth Bypass
CVSS 8.8
CVE-2026-26334 HIGH
Calero VeraSMART <2026 R1 - Info Disclosure
CVSS 7.8
CVE-2026-26218 CRITICAL
newbee-mall < 1.0.0 - Unauthenticated Account Takeover via Default Administrator Credentials
CVSS 9.8
CVE-2026-25803 CRITICAL
3dp-manager < 2.0.1 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2026-2103 HIGH
Infor SyteLine ERP - Info Disclosure
CVSS 7.1
CVE-2026-20111 MEDIUM
Cisco Prime Infrastructure - Authenticated Stored Cross-Site Scripting in Web Management Interface
CVSS 4.8
CVE-2026-25202 CRITICAL
MagicINFO 9 Server <21.1090.1 - Info Disclosure
CVSS 9.8
CVE-2026-1610 HIGH
Tenda AX12 Pro V2 16.03.49.24_cn - Info Disclosure
CVSS 8.1
CVE-2026-24840 HIGH
dokploy < 0.26.6 - Use of Hard-coded Credentials in Installation Script
CVSS 8.0
CVE-2026-24346 CRITICAL
EZCast Pro II <1.17478.146 - Info Disclosure
CVSS 9.1
CVE-2026-0622 MEDIUM
open5gs < 2.7.6 - Use of Hard-coded JWT Signing Key
CVSS 6.5
CVE-2026-1221 CRITICAL
BROWAN PrismX MX100 AP < 1.03.23.01 - Unauthenticated Database Access via Hardcoded Credentials
CVSS 9.8
CVE-2026-22911 MEDIUM
SICK TDC-X401GL Firmware - Insufficiently Protected Credentials via Firmware Update Files
CVSS 5.3
CVE-2025-71317 CRITICAL
NetMan 204 Hard-coded Backdoor Credentials
CVSS 9.8
CVE-2025-68421 HIGH
Hardcoded credentials in Comarch ERP Optima
CVE-2025-10681 HIGH
Gardyn Mobile Application and Device Firmware Use Hard-coded Credentials
CVSS 8.6
CVE-2025-9497 CRITICAL
Hardcoded Upgrade Decryption Passwords
CVSS 9.8
CVE-2025-55263 HIGH
HCL Aftermarket DPC is affected by Hardcoded Sensitive Data
CVSS 7.3
Details
Vulnerabilities 1,712
Exploit Likelihood High