Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2012-3503
The installation script in Katello 1.0 and earlier does not properly generate the Application.config.secret_token value, which causes each default in…
Enterprise Linux Server
after 1.0
HIGH 7.8
CVE-2010-2772
Siemens Simatic WinCC and PCS 7 SCADA system uses a hard-coded password, which allows local users to access a back-end database and gain privileges, …
Simatic Wincc
No fix yet
HIGH 7.5
CVE-2010-2073
auth_db_config.py in Pyftpd 0.8.4 contains hard-coded usernames and passwords for the (1) test, (2) user, and (3) roxon accounts, which allows remote…
Pyftpd
Patch available
CRITICAL 9.8
CVE-2010-1573EPSS 21%
Linksys WAP54Gv3 firmware 3.04.03 and earlier uses a hard-coded username (Gemtek) and password (gemtekswd) for a debug interface for certain web page…
Wap54g Firmware
after 3.04.03
CRITICAL 9.1
CVE-2008-2369
manzier.pxt in Red Hat Network Satellite Server before 5.1.1 has a hard-coded authentication key, which allows remote attackers to connect to the ser…
Satellite
5.1.1+
CRITICAL 9.8
CVE-2008-0961
EMV DiskXtender 6.20.060 has a hard-coded login and password, which allows remote attackers to bypass authentication via the RPC interface.
Diskxtender
Mitigation only
CRITICAL 9.8
CVE-2008-1160EPSS 15%
ZyXEL ZyWALL 1050 has a hard-coded password for the Quagga and Zebra processes that is not changed when it is set by a user, which allows remote atta…
Zywall 1050 Firmware
No fix yet
HIGH 7.8
CVE-2006-7142
The centralized management feature for Utimaco Safeguard stores hard-coded cryptographic keys in executable programs for encrypted configuration file…
Safeguard
Mitigation only
HIGH 7.5
CVE-2006-7074
admin.php in SmartSiteCMS 1.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the userName cookie.
Smartsitecms
Mitigation only
HIGH 10.0
CVE-2007-1063
The SSH server in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier, uses a hard-coded usernam…
Unified Ip Phone Firmware 7906g
Patch available
HIGH 7.5
CVE-2005-3803
Cisco IP Phone (VoIP) 7920 1.0(8) contains certain hard-coded ("fixed") public and private SNMP community strings that cannot be changed, which allow…
Unified Wireless Ip Phone 7920 Firmware
Patch available
HIGH 7.5
CVE-2005-3716
The SNMP daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has hard-coded public credentials that cannot be c…
F1000 Wi Fi Firmware
Mitigation only
CRITICAL 9.8
CVE-2005-0496
Arkeia Network Backup Client 5.x contains hard-coded credentials that effectively serve as a back door, which allows remote attackers to access the f…
Network Backup
Mitigation only
HIGH 7.5
CVE-2000-1139EPSS 5%
The installation of Microsoft Exchange 2000 before Rev. A creates a user account with a known password, which could allow attackers to gain privilege…
Exchange Server
Patch available