Vulnerabilities > Inadequate Encryption Strength

DATE CVE VULNERABILITY TITLE RISK
2019-06-25 CVE-2019-4151 Inadequate Encryption Strength vulnerability in IBM Security Access Manager
IBM Security Access Manager 9.0.1 through 9.0.6 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
high complexity
ibm CWE-326
5.9
2019-06-19 CVE-2019-6972 Inadequate Encryption Strength vulnerability in Tp-Link Tl-Wr1043Nd Firmware 2.0
An issue was discovered on TP-Link TL-WR1043ND V2 devices.
network
low complexity
tp-link CWE-326
7.5
2019-05-29 CVE-2019-4256 Inadequate Encryption Strength vulnerability in IBM API Connect
IBM API Connect 5.0.0.0 through 5.0.8.6 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
low complexity
ibm CWE-326
7.5
2019-05-23 CVE-2019-10855 Inadequate Encryption Strength vulnerability in Computrols Building Automation Software
Computrols CBAS 18.0.0 mishandles password hashes.
network
low complexity
computrols CWE-326
7.5
2019-05-16 CVE-2019-10112 Inadequate Encryption Strength vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2.
network
low complexity
gitlab CWE-326
7.5
2019-05-01 CVE-2018-1608 Inadequate Encryption Strength vulnerability in IBM Rational Engineering Lifecycle Manager
IBM Rational Engineering Lifecycle Manager 6.0 through 6.0.6 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
low complexity
ibm CWE-326
7.5
2019-04-29 CVE-2018-2007 Inadequate Encryption Strength vulnerability in IBM API Connect
IBM API Connect 2018.1 and 2018.4.1.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
low complexity
ibm CWE-326
7.5
2019-04-15 CVE-2018-1925 Inadequate Encryption Strength vulnerability in IBM Websphere MQ 9.1.0.0/9.1.0.1/9.1.1
IBM WebShere MQ 9.1.0.0, 9.1.0.1, 9.1.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
high complexity
ibm CWE-326
5.9
2019-04-07 CVE-2019-10907 Inadequate Encryption Strength vulnerability in Airsonic Project Airsonic 10.2.1
Airsonic 10.2.1 uses Spring's default remember-me mechanism based on MD5, with a fixed key of airsonic in GlobalSecurityConfig.java.
network
low complexity
airsonic-project CWE-326
critical
9.8
2019-03-21 CVE-2017-1713 Inadequate Encryption Strength vulnerability in IBM Infosphere Streams 4.2.1
IBM InfoSphere Streams 4.2.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
high complexity
ibm CWE-326
5.9