Vulnerabilities > Inadequate Encryption Strength

DATE CVE VULNERABILITY TITLE RISK
2020-06-24 CVE-2020-10275 Inadequate Encryption Strength vulnerability in multiple products
The access tokens for the REST API are directly derived from the publicly available default credentials for the web interface.
network
low complexity
mobile-industrial-robots easyrobotics uvd-robots CWE-326
critical
9.8
2020-06-15 CVE-2020-0533 Inadequate Encryption Strength vulnerability in Intel Converged Security Management Engine Firmware
Reversible one-way hash in Intel(R) CSME versions before 11.8.76, 11.12.77 and 11.22.77 may allow a privileged user to potentially enable escalation of privilege, denial of service or information disclosure via local access.
local
low complexity
intel CWE-326
6.7
2020-06-12 CVE-2020-3929 Inadequate Encryption Strength vulnerability in Usavisionsys products
GeoVision Door Access Control device family employs shared cryptographic private keys for SSH and HTTPS.
network
high complexity
usavisionsys CWE-326
5.9
2020-06-11 CVE-2020-12714 Inadequate Encryption Strength vulnerability in Ciphermail Gateway and Webmail Messenger
An issue was discovered in CipherMail Community Gateway Virtual Appliances and Professional/Enterprise Gateway Virtual Appliances versions 1.0.1 through 4.7.1-0 and CipherMail Webmail Messenger Virtual Appliances 1.1.1 through 3.1.1-0.
network
high complexity
ciphermail CWE-326
5.9
2020-06-03 CVE-2020-13785 Inadequate Encryption Strength vulnerability in Dlink Dir-865L Firmware 1.20B01
D-Link DIR-865L Ax 1.20B01 Beta devices have Inadequate Encryption Strength.
network
low complexity
dlink CWE-326
7.5
2020-05-15 CVE-2020-12872 Inadequate Encryption Strength vulnerability in Yaws
yaws_config.erl in Yaws through 2.0.2 and/or 2.0.7 loads obsolete TLS ciphers, as demonstrated by ones that allow Sweet32 attacks, if running on an Erlang/OTP virtual machine with a version less than 21.0.
local
low complexity
yaws CWE-326
5.5
2020-04-08 CVE-2018-21080 Inadequate Encryption Strength vulnerability in Google Android
An issue was discovered on Samsung mobile devices with N(7.x) software.
low complexity
google CWE-326
4.6
2020-04-07 CVE-2016-11043 Inadequate Encryption Strength vulnerability in Google Android 6.0
An issue was discovered on Samsung mobile devices with M(6.0) software.
network
low complexity
google CWE-326
7.5
2020-04-02 CVE-2019-19097 Inadequate Encryption Strength vulnerability in Hitachienergy Esoms
ABB eSOMS versions 4.0 to 6.0.3 accept connections using medium strength ciphers.
network
low complexity
hitachienergy CWE-326
7.5
2020-04-01 CVE-2020-10866 Inadequate Encryption Strength vulnerability in Avast Antivirus
An issue was discovered in Avast Antivirus before 20.
network
low complexity
avast CWE-326
7.5