CWE-798

High likelihood

Use of Hard-coded Credentials

Parent: CWE-1391 - Use of Weak Credentials

The product contains hard-coded credentials, such as a password or cryptographic key.

1,721 vulnerabilities with CWE-798
CVE-2019-14309 HIGH
Ricoh SP C250DN <1.05 - Info Disclosure
CVSS 7.5
CVE-2019-5158 HIGH
WAGO e!COCKPIT <1.6.1.5 - Code Injection
CVSS 7.8
CVE-2019-5106 MEDIUM
WAGO e!Cockpit <1.5.1.1 - Info Disclosure
CVSS 5.5
CVE-2019-5139 HIGH
Moxa AWK-3131A <1.13 - Hard-Coded Credentials
CVSS 7.1
CVE-2019-5137 HIGH
Moxa AWK-3131A <1.13 - Info Disclosure
CVSS 7.5
CVE-2019-4392 CRITICAL
HCL AppScan <9.0.3.13 - Privilege Escalation
CVSS 9.8
CVE-2019-4675 CRITICAL
IBM Security Identity Manager 7.0.1 - Info Disclosure
CVSS 9.8
CVE-2019-16153 CRITICAL
Fortinet FortiSIEM <5.2.5 - Info Disclosure
CVSS 9.8
CVE-2019-9493 MEDIUM
AutoMobility MyCar <3.4.24-4.1.2 - Command Injection
CVSS 6.5
CVE-2019-10995 HIGH
ABB CP651/CP661/CP665/CP676 Firmware < bsp_un30_1.76 - Use of Hard-coded Credentials
CVSS 8.8
CVE-2019-14919 HIGH
Billion SG600R2 Firmware v3.02.rc6 - Use of Hard-coded Credentials in Telnet Service
CVSS 7.8
CVE-2019-14837 CRITICAL
Keycloak <8.0.0 - Privilege Escalation
CVSS 9.1
CVE-2019-15977 HIGH
Cisco Data Center Network Manager < 11.3(1) - Unauthenticated Authentication Bypass via Hard-coded Credentials
CVSS 7.5
CVE-2019-15976 CRITICAL
Cisco Data Center Network Manager < 11.3(1) - Unauthenticated Authentication Bypass via Hard-coded Credentials
CVSS 9.8
CVE-2019-15975 CRITICAL
Cisco Data Center Network Manager < 11.3(1) - Unauthenticated Remote Code Execution via Authentication Bypass
CVSS 9.8
CVE-2019-18831 MEDIUM
Barco ClickShare Button R9861500D01 <1.9.0 - Info Disclosure
CVSS 5.3
CVE-2019-16734 CRITICAL
Petwant PF-103 and Petalk AI Firmware - Use of Hard-coded Credentials in TELNET Server
CVSS 9.8
CVE-2019-10694 CRITICAL
Puppet Enterprise 2018.1.0-2018.1.8 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2019-3983 MEDIUM
Blink XT2 Sync Module Firmware < 2.13.11 - Remote Code Execution via UART
CVSS 6.8
CVE-2019-19021 CRITICAL
TitanHQ WebTitan <5.18 - Info Disclosure
CVSS 9.8
CVE-2019-19017 HIGH
TitanHQ WebTitan <5.18 - Privilege Escalation
CVSS 8.1
CVE-2019-19492 CRITICAL
FreeSWITCH <1.10.1 - Info Disclosure
CVSS 9.8
CVE-2019-19033 CRITICAL
Jalios JCMS 10 - Privilege Escalation
CVSS 9.8
CVE-2019-6693 MEDIUM KEV
FortiOS < 5.6.10 - Use of Hard-coded Credentials in Configuration Backup
CVSS 6.5
CVE-2019-15802 MEDIUM
Zyxel GS1900 Series Firmware < 2.50(AAHH.0)C0 - Use of Hard-coded Credentials in Password Encryption
CVSS 5.9
Details
Vulnerabilities 1,721
Exploit Likelihood High