Vulnerability index

Browse CVEs

1,724 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Hard-coded CredentialsCWE-798 × clear
Gnc Cw013 Firmware HIGH 7.2
CVE-2020-28999

An issue was discovered in Apexis Streaming Video Web Application on Geeni GNC-CW013 doorbell 1.8.1 devices. A remote attacker can take full control …

Mitigation only
Fix from $1,950 2021-01-26
Rln8 410 Firmware HIGH 7.8
CVE-2020-25173

An attacker with local network access can obtain a fixed cryptography key which may allow for further compromise of Reolink P2P cameras outside of lo…

No fix yet
Fix from $1,950 2021-01-26
Smart Software Manager On Prem HIGH 7.8
CVE-2021-1219

A vulnerability in Cisco Smart Software Manager Satellite could allow an authenticated, local attacker to access sensitive information on an affected…

Fix: after 5.1.0
Fix from $1,950 2021-01-20
Spectrum Lsf HIGH 7.8
CVE-2020-4983

IBM Spectrum LSF 10.1 and IBM Spectrum LSF Suite 10.2 could allow a user on the local network who has privileges to submit LSF jobs to execute arbitr…

Patch available
Fix from $1,950 2021-01-20
Anydana A Firmware MEDIUM 6.8
CVE-2020-27256

In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a hard-coded physician PIN in the physician menu of the insulin pump allows att…

Fix: 3.0+
Fix from $1,600 2021-01-19
Tinycheck CRITICAL 9.8
CVE-2020-35929

In TinyCheck before commits 9fd360d and ea53de8, the installation script of the tool contained hard-coded credentials to the backend part of the tool…

Fix: 2020-12-18+
Fix from $2,300 2021-01-19
Scalance X200 4pirt Firmware MEDIUM 5.9
CVE-2020-28391

A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE X-200IRT switch fam…

Fix: 5.5.0+
Fix from $1,600 2021-01-12
Scalance Xr324 12m Firmware MEDIUM 5.9
CVE-2020-28395

A vulnerability has been identified in SCALANCE X-200RNA switch family (All versions < V3.2.7), SCALANCE X-300 switch family (incl. X408 and SIPLUS N…

Fix: 4.1.0+
Fix from $1,600 2021-01-12
Ak45x Firmware CRITICAL 9.8
CVE-2020-10207

Use of Hard-coded Credentials in EntoneWebEngine in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series…

No fix yet
Fix from $2,300 2020-12-29
Ak45x Firmware CRITICAL 9.8
CVE-2020-10210

Because of hard-coded SSH keys for the root user in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series…

No fix yet
Fix from $2,300 2020-12-29
Wv S2231l Firmware MEDIUM 6.8
CVE-2020-29193

Panasonic Security System WV-S2231L 4.25 has an insecure hard-coded password of lkjhgfdsa (which is just the asdf keyboard row in reverse order).

Mitigation only
Fix from $1,600 2020-12-28
Qes HIGH 7.2
CVE-2020-2499

A hard-coded password vulnerability has been reported to affect earlier versions of QES. If exploited, this vulnerability could allow attackers to lo…

Fix: 2.1.1+
Fix from $1,950 2020-12-24
Bilanc HIGH 7.5
CVE-2020-11719

An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and possibly below. It relies on broken encryption with a weak and guessa…

Fix: after 014_31.01.2020
Fix from $1,950 2020-12-23
Bilanc CRITICAL 9.8
CVE-2020-11720

An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and possibly below. During the installation, it sets up administrative ac…

Fix: after 014_31.01.2020
Fix from $2,300 2020-12-23
Bilanc CRITICAL 9.8
CVE-2020-8995

Programi Bilanc Build 007 Release 014 31.01.2020 supplies a .exe file containing several hardcoded credentials to different servers that allow remote…

Fix: after 014_31.01.2020
Fix from $2,300 2020-12-21
Zxhn E8810 Firmware HIGH 7.5
CVE-2020-6882

ZTE E8810/E8820/E8822 series routers have an information leak vulnerability, which is caused by hard-coded MQTT service access credentials on the dev…

Mitigation only
Fix from $1,950 2020-12-21
Netcrunch CRITICAL 9.8
CVE-2019-14482

AdRem NetCrunch 10.6.0.4587 has a hardcoded SSL private key vulnerability in the NetCrunch web client. The same hardcoded SSL private key is used acr…

Fix: after 10.6.0.4587
Fix from $2,300 2020-12-16
N Central HIGH 7.8
CVE-2020-25620

An issue was discovered in SolarWinds N-Central 12.3.0.670. Hard-coded Credentials exist by default for local user accounts named [email protected]

Mitigation only
Fix from $1,950 2020-12-16
Android HIGH 7.8
CVE-2020-0016

In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local escalation of privilege in the kernel with no additio…

Mitigation only
Fix from $1,950 2020-12-14
Logo\! 8 Bm Firmware HIGH 7.5
CVE-2020-25229

A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The implemented encryption for communication with af…

Fix: 8.3+
Fix from $1,950 2020-12-14
Logo\! 8 Bm Firmware MEDIUM 5.5
CVE-2020-25231

A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3), LOGO! Soft Comfort (All versions < V8.3). The encryp…

Fix: 8.3+
Fix from $1,600 2020-12-14
Wireless Multiplex Terminal Playout Server CRITICAL 9.8
CVE-2020-35338EPSS 12%

The Web Administrative Interface in Mobile Viewpoint Wireless Multiplex Terminal (WMT) Playout Server 20.2.8 and earlier has a default account with a…

Fix: after 20.2.8
Fix from $2,300 2020-12-14
V1600d Firmware HIGH 7.8
CVE-2020-29382

An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. A hardcoded RSA private key…

No fix yet
Fix from $1,950 2020-11-29
V1600d4l Firmware HIGH 7.8
CVE-2020-29383

An issue was discovered on V-SOL V1600D4L V1.01.49 and V1600D-MINI V1.01.48 OLT devices. A hardcoded RSA private key (specific to V1600D4L and V1600D…

Mitigation only
Fix from $1,950 2020-11-29
V1600d Firmware HIGH 8.8
CVE-2020-29375

An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4…

Mitigation only
Fix from $1,950 2020-11-29
V1600d Firmware CRITICAL 9.8
CVE-2020-29376

An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4…

No fix yet
Fix from $2,300 2020-11-29
V1600d Firmware CRITICAL 9.8
CVE-2020-29377

An issue was discovered on V-SOL V1600D V2.03.69 OLT devices. The string K0LTdi@gnos312$ is compared to the password provided by the the remote attac…

No fix yet
Fix from $2,300 2020-11-29
72408a Firmware CRITICAL 9.8
CVE-2020-29059

An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B,…

No fix yet
Fix from $2,300 2020-11-24
72408a Firmware CRITICAL 9.8
CVE-2020-29060

An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B,…

No fix yet
Fix from $2,300 2020-11-24
72408a Firmware CRITICAL 9.8
CVE-2020-29061

An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B,…

No fix yet
Fix from $2,300 2020-11-24