Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2018-01-29 CVE-2018-6387 Use of Hard-coded Credentials vulnerability in Iball Ib-Wra150N Firmware 1.2.6
iBall iB-WRA150N 1.2.6 build 110401 Rel.47776n devices have a hardcoded password of admin for the admin account, a hardcoded password of support for the support account, and a hardcoded password of user for the user account.
network
low complexity
iball CWE-798
critical
9.8
2018-01-26 CVE-2017-1204 Use of Hard-coded Credentials vulnerability in IBM Tealeaf Customer Experience 8.7/8.8/9.0.2
IBM Tealeaf Customer Experience 8.7, 8.8, and 9.0.2 contains hard-coded credentials.
network
low complexity
ibm CWE-798
critical
9.8
2018-01-26 CVE-2017-3762 Use of Hard-coded Credentials vulnerability in Lenovo Fingerprint Manager PRO 8.01.86
Sensitive data stored by Lenovo Fingerprint Manager Pro, version 8.01.86 and earlier, including users' Windows logon credentials and fingerprint data, is encrypted using a weak algorithm, contains a hard-coded password, and is accessible to all users with local non-administrative access to the system in which it is installed.
local
low complexity
lenovo CWE-798
7.8
2018-01-16 CVE-2018-5725 Use of Hard-coded Credentials vulnerability in Barni Master IP Camera01 Firmware 3.3.4.2103
MASTER IPCAMERA01 3.3.4.2103 devices allow Unauthenticated Configuration Change, as demonstrated by the port number of the web server.
network
low complexity
barni CWE-798
7.5
2018-01-16 CVE-2018-5723 Use of Hard-coded Credentials vulnerability in Barni Master IP Camera01 Firmware 3.3.4.2103
MASTER IPCAMERA01 3.3.4.2103 devices have a hardcoded password of cat1029 for the root account.
network
low complexity
barni CWE-798
critical
9.8
2018-01-05 CVE-2014-8579 Use of Hard-coded Credentials vulnerability in Trendnet Tew-823Dru Firmware 1.00B30
TRENDnet TEW-823DRU devices with firmware before 1.00b36 have a hardcoded password of kcodeskcodes for the root account, which makes it easier for remote attackers to obtain access via an FTP session.
network
low complexity
trendnet CWE-798
critical
9.8
2017-12-19 CVE-2017-17107 Use of Hard-coded Credentials vulnerability in Zivif Pr115-204-P-Rs Firmware 2.3.4.2103
Zivif PR115-204-P-RS V2.3.4.2103 web cameras contain a hard-coded cat1029 password for the root user.
network
low complexity
zivif CWE-798
critical
9.8
2017-12-16 CVE-2017-3186 Use of Hard-coded Credentials vulnerability in Acti Camera Firmware A1D500V6.11.31Ac
ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC use non-random default credentials across all devices.
network
low complexity
acti CWE-798
critical
9.8
2017-12-16 CVE-2017-3184 Use of Hard-coded Credentials vulnerability in Acti Camera Firmware A1D500V6.11.31Ac
ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC fail to properly restrict access to the factory reset page.
network
low complexity
acti CWE-798
critical
9.8
2017-12-06 CVE-2017-14374 Use of Hard-coded Credentials vulnerability in Dell Storage Manager
The SMI-S service in Dell Storage Manager versions earlier than 16.3.20 (aka 2016 R3.20) is protected using a hard-coded password.
network
low complexity
dell CWE-798
critical
9.8