Vulnerabilities > Use of a Broken or Risky Cryptographic Algorithm

DATE CVE VULNERABILITY TITLE RISK
2022-10-06 CVE-2022-2781 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Octopus Server
In affected versions of Octopus Server it was identified that the same encryption process was used for both encrypting session cookies and variables.
network
low complexity
octopus CWE-327
5.3
2022-08-29 CVE-2022-37177 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Hirevue Hiring Platform
HireVue Hiring Platform V1.0 suffers from Use of a Broken or Risky Cryptographic Algorithm.
network
low complexity
hirevue CWE-327
7.5
2022-08-20 CVE-2022-38493 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Rhonabwy Project Rhonabwy
Rhonabwy 0.9.99 through 1.1.x before 1.1.7 doesn't check the RSA private key length before RSA-OAEP decryption.
network
low complexity
rhonabwy-project CWE-327
7.5
2022-07-28 CVE-2022-30320 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Honeywell Saia PG5 Controls Suite
Saia Burgess Controls (SBC) PCD through 2022-05-06 uses a Broken or Risky Cryptographic Algorithm.
low complexity
honeywell CWE-327
4.3
2022-07-26 CVE-2022-29965 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Emerson products
The Emerson DeltaV Distributed Control System (DCS) controllers and IO cards through 2022-04-29 misuse passwords.
local
low complexity
emerson CWE-327
5.5
2022-07-26 CVE-2022-30273 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Motorolasolutions Mdlc 4.80.0024/4.82.004/4.83.001
The Motorola MDLC protocol through 2022-05-02 mishandles message integrity.
network
low complexity
motorolasolutions CWE-327
critical
9.8
2022-07-18 CVE-2022-34632 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Linuxfoundation Rocket Chip Generator
Rocket-Chip commit 4f8114374d8824dfdec03f576a8cd68bebce4e56 was discovered to contain insufficient cryptography via the component /rocket/RocketCore.scala.
network
low complexity
linuxfoundation CWE-327
critical
9.1
2022-07-05 CVE-2022-2097 Use of a Broken or Risky Cryptographic Algorithm vulnerability in multiple products
AES OCB mode for 32-bit x86 platforms using the AES-NI assembly optimised implementation will not encrypt the entirety of the data under some circumstances.
5.3
2022-06-28 CVE-2022-31230 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Powerscale Onefs 9.0.0.0/9.1.0.0
Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain broken or risky cryptographic algorithm.
network
low complexity
dell CWE-327
critical
9.8
2022-06-27 CVE-2022-28622 Use of a Broken or Risky Cryptographic Algorithm vulnerability in HPE Storeonce 3640 Firmware 4.2.3/4.3.0
A potential security vulnerability has been identified in HPE StoreOnce Software.
network
low complexity
hpe CWE-327
7.5