CWE-798

High likelihood

Use of Hard-coded Credentials

Parent: CWE-1391 - Use of Weak Credentials

The product contains hard-coded credentials, such as a password or cryptographic key.

1,721 vulnerabilities with CWE-798
CVE-2018-0663 HIGH
I-O DATA TS-WRLP, TS-WRLA, TS-WRLP/E < 1.09.04 - Authenticated OS Command Execution via Hardcoded Credentials
CVSS 8.8
CVE-2018-16546 MEDIUM
Amcrest IPC-HX1X3X-LEXUS - Hardcoded SSL Private Key
CVSS 5.9
CVE-2018-14901 HIGH
EPSON iPrint <6.6.3 - Info Disclosure
CVSS 7.5
CVE-2018-13820 HIGH
CA Unified Infrastructure Management 8.4.7, 8.5, 8.5.1 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2018-13819 HIGH
CA Unified Infrastructure Management 8.4.7, 8.5, 8.5.1 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2018-16158 CRITICAL
Eaton Power Xpert Meter 4000, 6000, and 8000 Firmware < 13.4.0.10 - Use of Hard-coded SSH Private Key
CVSS 9.8
CVE-2018-12240 MEDIUM
Norton Identity Safe <5.3.0.976 - Privilege Escalation
CVSS 5.9
CVE-2018-15808 CRITICAL
POSIM EVO 15.13 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2018-14801 MEDIUM
Philips PageWriter TC - Privilege Escalation
CVSS 6.2
CVE-2018-15491 HIGH
Zemana AntiLogger < 1.9.3.602 - Unauthenticated Whitelist Bypass via MyRules2.ini
CVSS 7.5
CVE-2018-15360 HIGH
Eltex ESP-200 <1.2.0 - Info Disclosure
CVSS 7.3
CVE-2018-11509 CRITICAL
ASUSTOR ADM 3.1.0.RFQ3 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2018-14943 CRITICAL
Harmonic NSG 9000 - Info Disclosure
CVSS 9.8
CVE-2018-10592 CRITICAL
Yokogawa STARDOM FCJ <R4.02 - Auth Bypass
CVSS 9.8
CVE-2018-10898 HIGH
openstack-tripleo-heat-templates < 8.0.2-40 - Use of Hard-coded Credentials
CVSS 8.8
CVE-2018-9068 HIGH
Lenovo Flex System and System x Firmware < 4.90 - Hard-coded Credentials in IMM2 FFDC SFTP Server
CVSS 7.5
CVE-2018-0375 CRITICAL
Cisco Policy Suite < 18.2.0 - Unauthenticated Use of Hard-coded Credentials
CVSS 9.8
CVE-2018-14324 CRITICAL
Oracle GlassFish Open Source Edition 5.0 - Info Disclosure
CVSS 9.8
CVE-2018-0041 CRITICAL
Juniper Contrail Service Orchestration < 3.3.0 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2018-0040 CRITICAL
Juniper Networks Contrail Service Orchestrator <4.0.0 - Info Disclo...
CVSS 9.8
CVE-2018-0039 MEDIUM
Juniper Contrail Service Orchestration < 4.0.0 - Unauthenticated Hardcoded Credentials in Grafana Service
CVSS 6.5
CVE-2018-0038 CRITICAL
Juniper Contrail Service Orchestration < 3.3.0 - Unauthenticated Use of Hard-coded Credentials in Cassandra Service
CVSS 9.8
CVE-2018-10633 CRITICAL
Universal Robots Robot Controllers - Info Disclosure
CVSS 9.8
CVE-2018-11641 CRITICAL
Dialogic PowerMedia XMS <= 3.5 - Use of Hard-coded Credentials in Administrative Console
CVSS 9.8
CVE-2018-11635 CRITICAL
Dialogic PowerMedia XMS <= 3.5 - Authentication Bypass via Hard-coded Cryptographic Key
CVSS 9.8
Details
Vulnerabilities 1,721
Exploit Likelihood High