Vulnerabilities > Use of a Broken or Risky Cryptographic Algorithm
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-06-22 | CVE-2023-28006 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Hcltech Bigfix OSD Bare Metal Server The OSD Bare Metal Server uses a cryptographic algorithm that is no longer considered sufficiently secure. | 7.8 |
2023-06-15 | CVE-2023-21115 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Google Android 11.0/12.0/12.1 In btm_sec_encrypt_change of btm_sec.cc, there is a possible way to downgrade the link key type due to improperly used crypto. | 8.8 |
2023-06-13 | CVE-2022-43949 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Fortinet Fortisiem A use of a broken or risky cryptographic algorithm [CWE-327] in Fortinet FortiSIEM before 6.7.1 allows a remote unauthenticated attacker to perform brute force attacks on GUI endpoints via taking advantage of outdated hashing methods. | 7.5 |
2023-06-01 | CVE-2023-28043 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Secure Connect Gateway 5.14.00.16 Dell SCG 5.14 contains an information disclosure vulnerability during the SRS to SCG upgrade path. | 6.5 |
2023-05-25 | CVE-2023-2900 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Nfine Rapid Development Platform Project Nfine Rapid Development Platform 20230511 A vulnerability was found in NFine Rapid Development Platform 20230511. | 7.5 |
2023-05-16 | CVE-2023-28076 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Cloudlink CloudLink 7.1.2 and all prior versions contain a broken or risky cryptographic algorithm vulnerability. | 7.5 |
2023-05-06 | CVE-2022-22313 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in IBM Qradar Data Synchronization IBM QRadar Data Synchronization App 1.0 through 3.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. | 7.5 |
2023-05-03 | CVE-2022-45858 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Fortinet Fortinac A use of a weak cryptographic algorithm vulnerability [CWE-327] in FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.0 all versions, 8.8.0 all versions, 8.7.0 all versions may increase the chances of an attacker to have access to sensitive information or to perform man-in-the-middle attacks. | 7.4 |
2023-04-28 | CVE-2023-27557 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in IBM Safer Payments IBM Counter Fraud Management for Safer Payments 6.1.0.00 through 6.1.1.02, 6.2.0.00 through 6.2.2.02, 6.3.0.00 through 6.3.1.02, 6.4.0.00 through 6.4.2.01, and 6.5.0.00 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. | 7.5 |
2023-04-25 | CVE-2022-40722 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Pingidentity products A misconfiguration of RSA padding implemented in the PingID Adapter for PingFederate to support Offline MFA with PingID mobile authenticators is vulnerable to pre-computed dictionary attacks, leading to a bypass of offline MFA. | 5.8 |