The product contains hard-coded credentials, such as a password or cryptographic key.
1,712 vulnerabilities with CWE-798
CVE-2025-58659
MEDIUM
Essekia Helpie FAQ <1.39 - Info Disclosure
CVSS 5.3
CVE-2025-58656
MEDIUM
Estonian Shipping Methods for WooCommerce <1.7.2 - Info Disclosure
CVSS 5.3
CVE-2025-58269
MEDIUM
WP Project Manager <2.6.25 - Info Disclosure
CVSS 5.3
CVE-2025-57434
HIGH
Creacast Creabox Manager - Improper Authentication via Password Prefix Bypass
CVSS 8.8
CVE-2025-57602
CRITICAL
AiKaan IoT Management Platform - Use of Hard-coded Credentials
CVSS 9.8
CVE-2025-57601
CRITICAL
AiKaan Cloud Controller - Open Redirect
CVSS 9.8
CVE-2025-52159
HIGH
PPress 0.0.9 - Use of Hard-coded Credentials
CVSS 8.8
CVE-2025-34198
CRITICAL
Vasion Print Virtual Appliance < 20.0.2368 and Virtual Appliance Host < 22.0.951 - Hardcoded SSH Private Keys
CVSS 9.8
CVE-2025-34197
HIGH
Vasion Print Virtual Appliance Host < 22.0.951 / Application < 20.0.2368 - Local Privilege Escalation
CVSS 7.8
CVE-2025-57579
HIGH
TOTOLINK X2000R-Gh-V2.0.0 - Remote Code Execution via Default Password
CVSS 8.0
CVE-2025-57578
HIGH
H3C Magic M Device M2V100R006 - Remote Code Execution via Default Password
CVSS 8.0
CVE-2025-57577
HIGH
H3C Device R365V300R004 - Remote Code Execution via Default Password
CVSS 8.0
CVE-2025-8570
CRITICAL
BeyondCart Connector <2.1.0 - Privilege Escalation
CVSS 9.8
CVE-2025-56466
HIGH
Dietly 1.25.0 - Use of Hard-coded Credentials
CVSS 7.5
CVE-2025-55047
HIGH
Baicells SPECTRA LTE-U eNB - Use of Hard-coded Credentials
CVSS 8.4
CVE-2025-35452
CRITICAL
PTZOptics PT12x-SDI-XX-G2 and other ValueHD-based Cameras - Use of Default Credentials
CVSS 9.8
CVE-2025-35451
CRITICAL
PTZOptics PT12X-SDI-XX-G2 Firmware < 6.3.34 - Use of Hard-coded Credentials
CVSS 9.8
CVE-2025-30200
MEDIUM
ECOVACS DEEBOT Firmware - Use of Hard-coded Cryptographic Key in Wi-Fi Communication
CVSS 6.3
CVE-2025-30198
MEDIUM
ECOVACS DEEBOT Firmware - Use of Hard-coded Cryptographic Key in Wi-Fi WPA2-PSK
CVSS 6.3
CVE-2025-55739
MEDIUM
FreePBX <15.0.13, 16.0.2-16.0.14, 17.0.1-17.0.2 - Auth Bypass
CVE-2025-9696
CRITICAL
SunPower PVS6 < 2025.06 build 61839 - Use of Hard-coded Credentials via BluetoothLE Interface
CVE-2025-9806
LOW
Tenda F1202 <1.2.0.20 - Info Disclosure
CVSS 1.9
CVE-2025-9778
LOW
Tenda W12 <3.0.0.6 - Hard-Coded Credentials
CVSS 1.9
CVE-2025-9731
LOW
Tenda AC9 15.03.05.19 - Hard-Coded Credentials
CVSS 2.5
CVE-2025-9725
LOW
Cudy LT500E <2.3.12 - Use of Hard-Coded Password
CVSS 2.5
Details
Vulnerabilities
1,712
Exploit Likelihood
High