The product contains hard-coded credentials, such as a password or cryptographic key.
1,721 vulnerabilities with CWE-798
CVE-2019-15801
HIGH
Zyxel GS1900 Series Firmware < 2.50 - Use of Hard-coded Credentials in libfds.so
CVSS 7.5
CVE-2019-13543
MEDIUM
Medtronic Valleylab - Info Disclosure
CVSS 5.8
CVE-2019-16207
HIGH
Brocade SANnav <2.0 - Privilege Escalation
CVSS 7.8
CVE-2019-4309
MEDIUM
IBM Security Guardium Big Data Intelligence - Info Disclosure
CVSS 5.5
CVE-2019-14930
CRITICAL
Mitsubishi Electric and INEA ME-RTU Firmware < 2.02 and < 3.0 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2019-14926
CRITICAL
Mitsubishi Electric and INEA ME-RTU Firmware < 2.02 and < 3.0 - Use of Hard-coded SSH Keys
CVSS 9.8
CVE-2019-13553
CRITICAL
Rittal Chiller SK 3232-Series - Auth Bypass
CVSS 9.8
CVE-2019-13657
CRITICAL
CA Performance Management <3.6.9-<3.7.4 - RCE
CVSS 9.8
CVE-2019-9533
CRITICAL
Cobham EXPLORER 710 - Info Disclosure
CVSS 9.8
CVE-2019-15017
HIGH
Zingbox Inspector < 1.294 - Use of Hard-coded Credentials in SSH Service
CVSS 8.4
CVE-2019-15015
HIGH
Zingbox Inspector < 1.294 - Use of Hard-coded Credentials
CVSS 8.4
CVE-2019-13658
CRITICAL
CA Network Flow Analysis <10.0 - Command Injection
CVSS 9.8
CVE-2019-13466
HIGH
SanDisk and Western Digital SSD Dashboard < 2.5.1.0 - Incorrect Access Control via Hard-coded Password
CVSS 7.5
CVE-2019-10990
MEDIUM
Red Lion Controls Crimson <3.1-3112.00 - Info Disclosure
CVSS 6.5
CVE-2019-16399
CRITICAL
Western Digital WD My Book World - Auth Bypass
CVSS 9.8
CVE-2019-13474
CRITICAL
TELESTAR Multiple Devices - Use of Hard-coded Credentials
CVSS 9.8
CVE-2019-16313
HIGH
ifw8 Router ROM <4.31 - Info Disclosure
CVSS 7.5
CVE-2019-13530
HIGH
Philips IntelliVue MP Monitors - Use of Hard-coded Password
CVSS 7.2
CVE-2019-11898
CRITICAL
Bosch APE <3.8 - Privilege Escalation
CVSS 9.9
CVE-2019-13473
CRITICAL
TELESTAR and Auna Firmware - Use of Hard-coded Credentials via Undocumented Telnet Service
CVSS 9.8
CVE-2019-15867
HIGH
Slick-Popup <1.7.2 - Info Disclosure
CVSS 8.8
CVE-2019-15745
HIGH
Eques elf Smart Plug Firmware - Unauthenticated Device Control via Hardcoded AES Key
CVSS 8.8
CVE-2019-14943
CRITICAL
GitLab 12.0-12.1.4 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2019-15497
CRITICAL
Black Box iCOMPEL 9.2.3-11.1.4 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2019-6698
CRITICAL
FortiRecorder Firmware < 2.7.4 - Unauthenticated Use of Hard-coded Credentials
CVSS 9.8
Details
Vulnerabilities
1,721
Exploit Likelihood
High