CWE-798

High likelihood

Use of Hard-coded Credentials

Parent: CWE-1391 - Use of Weak Credentials

The product contains hard-coded credentials, such as a password or cryptographic key.

1,721 vulnerabilities with CWE-798
CVE-2020-8000 CRITICAL
Intellian Aptus Web 1.24 - Info Disclosure
CVSS 9.8
CVE-2020-7999 CRITICAL
Intellian Aptus <1.0.2 - Info Disclosure
CVSS 9.8
CVE-2020-6963 CRITICAL
GE Healthcare ApexPro Telemetry Server < 4.2 - Remote Code Execution via Hardcoded SMB Credentials
CVSS 10.0
CVE-2020-6857 MEDIUM
CarbonFTP 1.4 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 5.5
CVE-2019-25722 HIGH
Drager SC Monitoring Devices - Hardcoded Credentials and Network Denial of Service
CVSS 7.6
CVE-2019-25470 HIGH
eWON Firmware 12.2-13.0 - Auth Bypass
CVSS 7.5
CVE-2019-25322 HIGH
Heatmiser Netmonitor 3.03 - Hardcoded Credentials
CVSS 7.5
CVE-2019-25291 HIGH
INIM Electronics Smartliving SmartLAN/G/SI <=6.x - Info Disclosure
CVSS 7.5
CVE-2019-25241 CRITICAL
FaceSentry Access Control System <6.4.8 - Privilege Escalation
CVSS 9.8
CVE-2019-17659 LOW
FortiSIEM < 5.2.7 - Unauthenticated SSH Access via Hard-coded Cryptographic Key
CVSS 3.7
CVE-2019-10881 CRITICAL
Xerox AltaLink B80xx/C80xx Firmware < 103.xxx.030.32000 - Unauthenticated Hard-coded Password Bypass
CVSS 9.8
CVE-2019-25021 HIGH
Scytl sVote 2.1 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2019-20471 HIGH
TK-Star Q90 Junior GPS Horloge Firmware 3.1042.9.8656 - Use of Hard-coded Credentials
CVSS 7.8
CVE-2019-14482 CRITICAL
AdRem NetCrunch 10.6.0.4587 - Info Disclosure
CVSS 9.8
CVE-2019-17098 LOW
August Connect <v10.11.0 - Info Disclosure
CVSS 3.5
CVE-2019-4694 CRITICAL
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 - Info Disclosure
CVSS 9.8
CVE-2019-20025 CRITICAL
NEC SV9100 Firmware >=6.0 - Unauthenticated Use of Hard-coded Credentials
CVSS 9.8
CVE-2019-16150 MEDIUM
FortiClient for Windows <6.4.0 - Info Disclosure
CVSS 5.5
CVE-2019-5622 CRITICAL
Accellion File Transfer Appliance FTA_8_0_540 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2019-6859 HIGH
Modicon Controllers - Info Disclosure
CVSS 7.5
CVE-2019-4327 HIGH
HCL AppScan Enterprise - Info Disclosure
CVSS 7.5
CVE-2019-19108 CRITICAL
B&R Automation Runtime - Auth Bypass
CVSS 9.4
CVE-2019-20656 HIGH
NETGEAR Multiple Routers and Gateways - Use of Hard-coded Credentials
CVSS 8.8
CVE-2019-13559 HIGH
GE Mark VIe Controller - Privilege Escalation
CVSS 7.8
CVE-2019-15075 HIGH
iNextrix ASTPP < 4.0.1 - Use of a Broken or Risky Cryptographic Algorithm in config.php
CVSS 7.5
Details
Vulnerabilities 1,721
Exploit Likelihood High