The product contains hard-coded credentials, such as a password or cryptographic key.
1,721 vulnerabilities with CWE-798
CVE-2017-12725
MEDIUM
Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump 1.1, 1.5, 1.6 - Use of Hard-coded Credentials
CVSS 5.6
CVE-2017-12724
HIGH
Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump 1.1, 1.5, 1.6 - Use of Hard-coded Credentials in FTP Server
CVSS 8.1
CVE-2017-1204
CRITICAL
IBM Tealeaf Customer Experience 8.7, 8.8, and 9.0.2 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2017-3762
HIGH
Lenovo Fingerprint Manager Pro <8.01.86 - Info Disclosure
CVSS 7.8
CVE-2017-17107
CRITICAL
Zivif PR115-204-P-RS V2.3.4.2103 - Info Disclosure
CVSS 9.8
CVE-2017-3186
CRITICAL
ACTi D, B, I, and E series cameras >=A1D-500-V6.11.31-AC - Unauthenticated Remote Control via Default Credentials
CVSS 9.8
CVE-2017-3184
CRITICAL
ACTi D, B, I, and E series cameras >=A1D-500-V6.11.31-AC - Unauthenticated Factory Reset via Direct URL Access
CVSS 9.8
CVE-2017-14374
CRITICAL
Dell Storage Manager <16.3.20 - Auth Bypass
CVSS 9.8
CVE-2017-2720
MEDIUM
FusionSphere OpenStack V100R006C00 - Information Exposure via Hard-coded Cryptographic Key
CVSS 5.3
CVE-2017-11026
HIGH
Android for MSM - Use of Hard-coded Credentials in FRP Partition Flashing
CVSS 7.8
CVE-2017-12350
HIGH
Cisco Umbrella Insights Virtual Appliance < 2.1.0 - Authenticated Use of Hard-coded Credentials
CVSS 8.2
CVE-2017-14027
CRITICAL
Korenix JetNet - Hard-coded Credentials
CVSS 9.8
CVE-2017-14021
CRITICAL
Korenix JetNet - Use of Hard-coded Cryptographic Key
CVSS 9.8
CVE-2017-14376
HIGH
EMC AppSync Server <3.5.0.1 - Info Disclosure
CVSS 7.8
CVE-2017-15582
HIGH
Diary with lock 4.72 - Use of Hard-coded Credentials in AES Encryption
CVSS 7.5
CVE-2017-15909
CRITICAL
D-Link DGS-1500 Ax < 2.51B021 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2017-12317
MEDIUM
Cisco AMP For Endpoints - Info Disclosure
CVSS 6.7
CVE-2017-10616
MEDIUM
Juniper Contrail 2.2-2.21.3, 3.0-3.0.3.3, 3.1-3.1.3.9, 3.2-3.2.4.9 Hard-coded Credentials in ifmap
CVSS 5.3
CVE-2017-12860
CRITICAL
Epson EasyMP - Use of Hard-coded Credentials
CVSS 9.8
CVE-2017-12239
MEDIUM
Cisco ASR 1000 Series - Unauthenticated Physical Access
CVSS 6.8
CVE-2017-9957
CRITICAL
Schneider Electric U.motion Builder <= 1.2.1 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2017-9956
HIGH
Schneider Electric U.motion Builder <= 1.2.1 - Authentication Bypass via Hard-coded Session ID
CVSS 7.3
CVE-2017-12928
CRITICAL
TecnoVISION DLX Spot Player4 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2017-9649
MEDIUM
Mirion Technologies - Hard-Coded Cryptographic Key
CVSS 5.0
CVE-2017-8772
CRITICAL
BE126 WIFI Repeater 1.0 - Use of Hard-coded Credentials
CVSS 9.8
Details
Vulnerabilities
1,721
Exploit Likelihood
High