Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2017-02-13 CVE-2016-8567 Use of Hard-coded Credentials vulnerability in Siemens Sicam Pas/Pqs 7.0
An issue was discovered in Siemens SICAM PAS before 8.00.
network
low complexity
siemens CWE-798
critical
9.8
2017-02-13 CVE-2016-8361 Use of Hard-coded Credentials vulnerability in Lynxspring Jenesys BAS Bridge 1.1.8
An issue was discovered in Lynxspring JENEsys BAS Bridge versions 1.1.8 and older.
network
low complexity
lynxspring CWE-798
8.6
2017-02-13 CVE-2016-5818 Use of Hard-coded Credentials vulnerability in Schneider-Electric Powerlogic Pm8Ecc Firmware 2.651
An issue was discovered in Schneider Electric PowerLogic PM8ECC device 2.651 and older.
network
low complexity
schneider-electric CWE-798
critical
9.8
2017-02-08 CVE-2016-8954 Use of Hard-coded Credentials vulnerability in IBM Dashdb Local
IBM dashDB Local uses hard-coded credentials that could allow a remote attacker to gain access to the Docker container or database.
network
low complexity
ibm CWE-798
critical
9.8
2017-02-02 CVE-2017-5600 Use of Hard-coded Credentials vulnerability in Netapp Oncommand Insight
The Data Warehouse component in NetApp OnCommand Insight before 7.2.3 allows remote attackers to obtain administrative access by leveraging a default privileged account.
network
low complexity
netapp CWE-798
critical
9.8
2017-02-01 CVE-2016-8491 Use of Hard-coded Credentials vulnerability in Fortinet Fortiwlc
The presence of a hardcoded account named 'core' in Fortinet FortiWLC allows attackers to gain unauthorized read/write access via a remote shell.
network
low complexity
fortinet CWE-798
critical
9.1
2017-01-30 CVE-2016-10179 Use of Hard-coded Credentials vulnerability in Dlink Dwr-932B Firmware 02.02Eu
An issue was discovered on the D-Link DWR-932B router.
network
low complexity
dlink CWE-798
7.5
2017-01-30 CVE-2016-10177 Use of Hard-coded Credentials vulnerability in Dlink Dwr-932B Firmware 02.02Eu
An issue was discovered on the D-Link DWR-932B router.
network
low complexity
dlink CWE-798
critical
9.8
2017-01-09 CVE-2016-10125 Use of Hard-coded Credentials vulnerability in Dlink Dgs-1100 Firmware 1.01.018
D-Link DGS-1100 devices with Rev.B firmware 1.01.018 have a hardcoded SSL private key, which allows man-in-the-middle attackers to spoof devices by hijacking an HTTPS session.
network
high complexity
dlink CWE-798
8.1
2017-01-06 CVE-2015-2867 Use of Hard-coded Credentials vulnerability in Trane Comfortlink II Firmware 2.0.2
A design flaw in the Trane ComfortLink II SCC firmware version 2.0.2 service allows remote attackers to take complete control of the system.
network
low complexity
trane CWE-798
critical
9.8