Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2007-03-07 CVE-2006-7142 Use of Hard-coded Credentials vulnerability in Utimaco Safeguard 4.30
The centralized management feature for Utimaco Safeguard stores hard-coded cryptographic keys in executable programs for encrypted configuration files, which allows attackers to recover the keys from the configuration files and decrypt the disk drive.
local
low complexity
utimaco CWE-798
7.8
2007-03-02 CVE-2006-7074 USE of Hard-Coded Credentials vulnerability in Smartsitecms 1.0
admin.php in SmartSiteCMS 1.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the userName cookie.
network
low complexity
smartsitecms CWE-798
7.5
2007-02-22 CVE-2007-1063 USE of Hard-Coded Credentials vulnerability in Cisco products
The SSH server in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier, uses a hard-coded username and password, which allows remote attackers to access the device.
network
low complexity
cisco CWE-798
critical
10.0
2005-11-24 CVE-2005-3803 Use of Hard-coded Credentials vulnerability in Cisco Unified Wireless IP Phone 7920 Firmware 1.0(8)
Cisco IP Phone (VoIP) 7920 1.0(8) contains certain hard-coded ("fixed") public and private SNMP community strings that cannot be changed, which allows remote attackers to obtain sensitive information.
network
low complexity
cisco CWE-798
7.5
2005-11-21 CVE-2005-3716 Use of Hard-coded Credentials vulnerability in Utstarcom F1000 Wi-Fi Firmware 2.0
The SNMP daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has hard-coded public credentials that cannot be changed, which allows attackers to obtain sensitive information.
network
low complexity
utstarcom CWE-798
7.5
2005-02-21 CVE-2005-0496 Use of Hard-coded Credentials vulnerability in Arkeia Network Backup 5.0
Arkeia Network Backup Client 5.x contains hard-coded credentials that effectively serve as a back door, which allows remote attackers to access the file system and possibly execute arbitrary commands.
network
low complexity
arkeia CWE-798
critical
9.8
2001-01-09 CVE-2000-1139 USE of Hard-Coded Credentials vulnerability in Microsoft Exchange Server 2000
The installation of Microsoft Exchange 2000 before Rev.
network
low complexity
microsoft CWE-798
7.5