Vulnerabilities > Use of a Broken or Risky Cryptographic Algorithm

DATE CVE VULNERABILITY TITLE RISK
2024-05-21 CVE-2024-31989 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Argoproj Argo CD
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes.
low complexity
argoproj CWE-327
critical
9.0
2024-02-23 CVE-2023-51392 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Silabs Emberznet 7.2.0/7.2.3
Ember ZNet between v7.2.0 and v7.4.0 used software AES-CCM instead of integrated hardware cryptographic accelerators, potentially increasing risk of electromagnetic and differential power analysis sidechannel attacks.
network
low complexity
silabs CWE-327
critical
9.8
2024-02-02 CVE-2023-51838 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Meshcentral 1.1.16
Ylianst MeshCentral 1.1.16 suffers from Use of a Broken or Risky Cryptographic Algorithm.
network
low complexity
meshcentral CWE-327
7.5
2024-02-01 CVE-2024-1040 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Gesslergmbh Web-Master Firmware 7.9
Gessler GmbH WEB-MASTER user account is stored using a weak hashing algorithm.
local
low complexity
gesslergmbh CWE-327
4.4
2024-01-29 CVE-2023-51839 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Devicefarmer Smartphone Test Farm 3.6.6
DeviceFarmer stf v3.6.6 suffers from Use of a Broken or Risky Cryptographic Algorithm.
network
low complexity
devicefarmer CWE-327
critical
9.1
2024-01-12 CVE-2023-49259 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Hongdian H8951-4G-Esp Firmware
The authentication cookies are generated using an algorithm based on the username, hardcoded secret and the up-time, and can be guessed in a reasonable time.
network
low complexity
hongdian CWE-327
7.5
2024-01-03 CVE-2023-50350 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by the use of a broken cryptographic algorithm for encryption, potentially giving an attacker ability to decrypt sensitive information.
network
low complexity
hcltech CWE-327
7.5
2023-12-31 CVE-2021-46900 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Sympa
Sympa before 6.2.62 relies on a cookie parameter for certain security objectives, but does not ensure that this parameter exists and has an unpredictable value.
network
low complexity
sympa CWE-327
7.5
2023-12-23 CVE-2023-5962 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Moxa products
A weak cryptographic algorithm vulnerability has been identified in ioLogik E1200 Series firmware versions v3.3 and prior.
network
low complexity
moxa CWE-327
6.5
2023-12-21 CVE-2023-50475 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Bcoin 2.2.0
An issue was discovered in bcoin-org bcoin version 2.2.0, allows remote attackers to obtain sensitive information via weak hashing algorithms in the component \vendor\faye-websocket.js.
network
low complexity
bcoin CWE-327
critical
9.1