Vulnerabilities > Inadequate Encryption Strength

DATE CVE VULNERABILITY TITLE RISK
2020-04-07 CVE-2016-11043 Inadequate Encryption Strength vulnerability in Google Android 6.0
An issue was discovered on Samsung mobile devices with M(6.0) software.
network
low complexity
google CWE-326
5.0
2020-04-02 CVE-2019-19097 Inadequate Encryption Strength vulnerability in Hitachienergy Esoms
ABB eSOMS versions 4.0 to 6.0.3 accept connections using medium strength ciphers.
network
low complexity
hitachienergy CWE-326
7.5
2020-04-01 CVE-2020-9770 Inadequate Encryption Strength vulnerability in Apple Ipados and Iphone OS
A logic issue was addressed with improved state management.
network
low complexity
apple CWE-326
4.0
2020-04-01 CVE-2020-10866 Inadequate Encryption Strength vulnerability in Avast Antivirus
An issue was discovered in Avast Antivirus before 20.
network
low complexity
avast CWE-326
5.0
2020-03-27 CVE-2020-5860 Inadequate Encryption Strength vulnerability in F5 products
On BIG-IP 15.0.0-15.1.0.2, 14.1.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5.1, and 11.5.2-11.6.5.1 and BIG-IQ 7.0.0, 6.0.0-6.1.0, and 5.2.0-5.4.0, in a High Availability (HA) network failover in Device Service Cluster (DSC), the failover service does not require a strong form of authentication and HA network failover traffic is not encrypted by Transport Layer Security (TLS).
network
f5 CWE-326
6.8
2020-03-20 CVE-2019-14855 Inadequate Encryption Strength vulnerability in multiple products
A flaw was found in the way certificate signatures could be forged using collisions found in the SHA-1 algorithm.
network
low complexity
gnupg fedoraproject canonical CWE-326
7.5
2020-03-10 CVE-2019-19299 Inadequate Encryption Strength vulnerability in Siemens Sinvr/Sivms Video Server
A vulnerability has been identified in SiNVR/SiVMS Video Server (All versions < V5.0.0), SiNVR/SiVMS Video Server (All versions >= V5.0.0 < V5.0.2), SiNVR/SiVMS Video Server (All versions >= V5.0.2).
network
low complexity
siemens CWE-326
7.5
2020-03-09 CVE-2020-10244 Inadequate Encryption Strength vulnerability in Jpaseto Project Jpaseto 0.1.0/0.2.0
JPaseto before 0.3.0 generates weak hashes when using v2.local tokens.
network
low complexity
jpaseto-project CWE-326
5.0
2020-03-04 CVE-2020-9476 Inadequate Encryption Strength vulnerability in Commscope Arris Tg1692A Firmware 9.1.103De2
ARRIS TG1692A devices allow remote attackers to discover the administrator login name and password by reading the /login page and performing base64 decoding.
network
low complexity
commscope CWE-326
7.5
2020-03-04 CVE-2020-9761 Inadequate Encryption Strength vulnerability in Unctad Asycuda World
An issue was discovered in UNCTAD ASYCUDA World 2001 through 2020.
network
low complexity
unctad CWE-326
7.5