Vulnerabilities > Use of a Broken or Risky Cryptographic Algorithm

DATE CVE VULNERABILITY TITLE RISK
2022-07-28 CVE-2022-30320 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Honeywell Saia PG5 Controls Suite
Saia Burgess Controls (SBC) PCD through 2022-05-06 uses a Broken or Risky Cryptographic Algorithm.
low complexity
honeywell CWE-327
4.3
2022-07-26 CVE-2022-29965 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Emerson products
The Emerson DeltaV Distributed Control System (DCS) controllers and IO cards through 2022-04-29 misuse passwords.
local
low complexity
emerson CWE-327
5.5
2022-07-26 CVE-2022-30273 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Motorolasolutions Mdlc 4.80.0024/4.82.004/4.83.001
The Motorola MDLC protocol through 2022-05-02 mishandles message integrity.
network
low complexity
motorolasolutions CWE-327
critical
9.8
2022-07-18 CVE-2022-34632 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Linuxfoundation Rocket Chip Generator
Rocket-Chip commit 4f8114374d8824dfdec03f576a8cd68bebce4e56 was discovered to contain insufficient cryptography via the component /rocket/RocketCore.scala.
network
low complexity
linuxfoundation CWE-327
critical
9.1
2022-07-13 CVE-2022-34757 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Schneider-Electric Easergy P5 Firmware 01.401.101/01.401.102
A CWE-327: Use of a Broken or Risky Cryptographic Algorithm vulnerability exists where weak cipher suites can be used for the SSH connection between Easergy Pro software and the device, which may allow an attacker to observe protected communication details.
network
low complexity
schneider-electric CWE-327
5.3
2022-07-12 CVE-2022-30187 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Microsoft Azure Storage Blobs and Azure Storage Queue
Azure Storage Library Information Disclosure Vulnerability
local
high complexity
microsoft CWE-327
4.7
2022-07-05 CVE-2022-2097 Use of a Broken or Risky Cryptographic Algorithm vulnerability in multiple products
AES OCB mode for 32-bit x86 platforms using the AES-NI assembly optimised implementation will not encrypt the entirety of the data under some circumstances.
5.3
2022-06-28 CVE-2022-31230 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Powerscale Onefs 9.0.0.0/9.1.0.0
Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain broken or risky cryptographic algorithm.
network
low complexity
dell CWE-327
critical
9.8
2022-06-27 CVE-2022-28622 Use of a Broken or Risky Cryptographic Algorithm vulnerability in HPE Storeonce 3640 Firmware 4.2.3/4.3.0
A potential security vulnerability has been identified in HPE StoreOnce Software.
network
low complexity
hpe CWE-327
7.5
2022-06-27 CVE-2022-28166 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Broadcom Sannav 2.1.0/2.1.1/2.2.0.0
In Brocade SANnav version before SANN2.2.0.2 and Brocade SANNav before 2.1.1.8, the implementation of TLS/SSL Server Supports the Use of Static Key Ciphers (ssl-static-key-ciphers) on ports 443 & 18082.
network
low complexity
broadcom CWE-327
7.5