CWE-798

High likelihood

Use of Hard-coded Credentials

Parent: CWE-1391 - Use of Weak Credentials

The product contains hard-coded credentials, such as a password or cryptographic key.

1,721 vulnerabilities with CWE-798
CVE-2018-9149 MEDIUM
Zyxel Multy X AC3000 Firmware - Use of Hard-coded Credentials via UART Access
CVSS 6.8
CVE-2018-9161 CRITICAL
Prisma Industriale Checkweigher PrismaWEB 1.21 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2018-0150 CRITICAL
Cisco IOS XE 16.x - Unauthenticated Use of Hard-coded Credentials
CVSS 9.8
CVE-2018-5768 CRITICAL
Tenda AC15 Firmware - Unauthenticated Remote Code Execution via Hard-coded Credentials
CVSS 9.8
CVE-2018-5552 LOW
DocuTrac QuicDoc & Office Therapy <1.6.4.0 - Info Disclosure
CVSS 2.9
CVE-2018-5551 CRITICAL
DocuTrac QuicDoc & Office Therapy <1.6.4.0 - Info Disclosure
CVSS 9.0
CVE-2018-1206 HIGH
Dell EMC Data Protection Advisor - Use of Hard-coded Credentials
CVSS 7.8
CVE-2018-7229 CRITICAL
Schneider Electric Pelco Sarix Professional < 3.29.67 - Unauthenticated Authentication Bypass via Hardcoded Credentials
CVSS 9.8
CVE-2018-1216 CRITICAL
Dell EMC Solutions Enabler Virtual Appliance < 8.4.0.21 - Hard-coded Credentials in vApp Manager
CVSS 9.8
CVE-2018-0141 HIGH
Cisco Prime Collaboration Provisioning 11.6 - Unauthenticated Hard-coded Credentials
CVSS 8.4
CVE-2018-7047 CRITICAL
Wowza Streaming Engine < 4.7.1 - Use of Hard-coded Credentials in MBeans Server
CVSS 9.8
CVE-2018-1214 HIGH
Dell EMC SupportAssist Enterprise 1.1-1.2 - Use of Hard-coded Credentials
CVSS 7.0
CVE-2018-6825 CRITICAL
VOBOT CLOCK < 0.99.30 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2018-5797 HIGH
ExtremeWireless WiNG 5.x < 5.8.6.9 and 5.9.x < 5.9.1.3 - Hardcoded AES Key Exposure via Smint_encrypt
CVSS 7.5
CVE-2018-6387 CRITICAL
iBall iB-WRA150N 1.2.6 build 110401 Rel.47776n - Use of Hard-coded Credentials
CVSS 9.8
CVE-2018-5725 HIGH
MASTER IPCAMERA01 <3.3.4.2103 - Info Disclosure
CVSS 7.5
CVE-2018-5723 CRITICAL
MASTER IPCAMERA01 <3.3.4.2103 - Info Disclosure
CVSS 9.8
CVE-2017-20234 CRITICAL
GarrettCom Magnum 6K and 10K Authentication Bypass via Hardcoded String
CVSS 9.8
CVE-2017-20214 HIGH
FLIR Thermal Camera F/FC/PT/D 8.0.0.64 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2017-20039 CRITICAL
SICUNET Access Controller <0.32-05z - Weak Authentication
CVSS 9.8
CVE-2017-8226 CRITICAL
Amcrest IPM-721S < 2.420.ac00.16.r.20160909 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2017-8415 CRITICAL
D-Link DCS-1100 and DCS-1130 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2017-14728 CRITICAL
Orpak SiteOmat - Authentication Bypass
CVSS 9.8
CVE-2017-18374 HIGH
Billion 5200w-t Firmware - Hard-coded Credentials
CVSS 8.8
CVE-2017-18373 HIGH
Billion 5200W-T Firmware - Use of Hard-coded Credentials
CVSS 8.8
Details
Vulnerabilities 1,721
Exploit Likelihood High