CWE-798

High likelihood

Use of Hard-coded Credentials

Parent: CWE-1391 - Use of Weak Credentials

The product contains hard-coded credentials, such as a password or cryptographic key.

1,721 vulnerabilities with CWE-798
CVE-2020-25180 MEDIUM
Schneider-electric Easergy T300 Firmware - Information Disclosure
CVSS 5.3
CVE-2020-36062 CRITICAL
Dairy Farm Shop Management System 1.0 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2020-36064 CRITICAL
Online Course Registration v1.0 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2020-4690 CRITICAL
IBM Security Guardium 11.3 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2020-25565 CRITICAL
SapphireIMS 5.0 - Authenticated Remote Code Execution via Hardcoded Credentials
CVSS 9.8
CVE-2020-25561 HIGH
SapphireIMS 5 - Use of Hard-coded Credentials
CVSS 7.8
CVE-2020-25560 CRITICAL
SapphireIMS 5.0 - Unauthenticated Remote Command Execution via Hardcoded Credentials
CVSS 9.8
CVE-2020-5349 CRITICAL
Dell EMC Networking S4100 and S5200 Series Switches - Unauthenticated Hardcoded Credential Use
CVSS 9.8
CVE-2020-25752 MEDIUM
Enphase Envoy R3.x and D4.x - Use of Hard-coded Credentials
CVSS 5.3
CVE-2020-15382 HIGH
Brocade SANnav <2.1.1 - Info Disclosure
CVSS 7.2
CVE-2020-29323 HIGH
D-link DIR-885L-MFC - Info Disclosure
CVSS 7.5
CVE-2020-29322 HIGH
D-Link DIR-880L 1.07 - Info Disclosure
CVSS 7.5
CVE-2020-29321 HIGH
D-Link DIR-868L 3.01 - Info Disclosure
CVSS 7.5
CVE-2020-1716 HIGH
Ceph <6.0.0alpha1 - Privilege Escalation
CVSS 8.8
CVE-2020-4932 HIGH
IBM QRadar SIEM 7.3-7.4 - Use of Hard-coded Credentials
CVSS 7.8
CVE-2020-21995 CRITICAL
Inim Smartliving Firmware < 6.0 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2020-14099 HIGH
Xiaomi AX1800 & RM1800 <1.0.336/<1.0.26 Sensitive Info Exposure via Hard-coded Keys
CVSS 7.5
CVE-2020-35138 CRITICAL
MobileIron <2021-03-22 - Info Disclosure
CVSS 9.8
CVE-2020-35137 HIGH
MobileIron <2021-03-22 - Info Disclosure
CVSS 7.5
CVE-2020-13963 CRITICAL
SOPlanning < 1.47 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2020-27278 MEDIUM
Hamilton Medical AG T1-Ventillator <2.2.3 - Privilege Escalation
CVSS 5.2
CVE-2020-28952 HIGH
Athom Homey and Homey Pro < 5.0.0 - Use of Hard-coded ZigBee Standard Network Key
CVSS 7.5
CVE-2020-35296 HIGH
ThinkAdmin v6 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2020-7846 HIGH
cnesty helpcom < 10.0 - Remote Code Execution via Hardcoded Cryptographic Key
CVSS 8.0
CVE-2020-9306 HIGH
Tesla Solarcity Solar Monitoring Gateway < 5.46.43 - Insufficiently Protected Credentials
CVSS 8.8
Details
Vulnerabilities 1,721
Exploit Likelihood High