Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2023-03-08 CVE-2023-1269 Use of Hard-coded Credentials vulnerability in Easyappointments
Use of Hard-coded Credentials in GitHub repository alextselegidis/easyappointments prior to 1.5.0.
network
low complexity
easyappointments CWE-798
critical
9.8
2023-03-06 CVE-2023-22344 Use of Hard-coded Credentials vulnerability in Dos-Osaka Rakuraku PC Cloud Agent and SS1
Use of hard-coded credentials vulnerability in SS1 Ver.13.0.0.40 and earlier and Rakuraku PC Cloud Agent Ver.2.1.8 and earlier allows a remote attacker to obtain the password of the debug tool and execute it.
network
low complexity
dos-osaka CWE-798
critical
9.8
2023-02-23 CVE-2023-25823 Use of Hard-coded Credentials vulnerability in Gradio Project Gradio
Gradio is an open-source Python library to build machine learning and data science demos and web applications.
network
low complexity
gradio-project CWE-798
critical
9.8
2023-02-23 CVE-2023-26462 Use of Hard-coded Credentials vulnerability in Thingsboard 3.4.1
ThingsBoard 3.4.1 could allow a remote attacker to gain elevated privileges because hard-coded service credentials (usable for privilege escalation) are stored in an insecure format.
network
high complexity
thingsboard CWE-798
8.1
2023-02-21 CVE-2022-46637 Use of Hard-coded Credentials vulnerability in Prolink2U Prs1841 Firmware UV2
Prolink router PRS1841 was discovered to contain hardcoded credentials for its Telnet and FTP services.
network
low complexity
prolink2u CWE-798
critical
9.8
2023-02-13 CVE-2023-0808 Use of Hard-coded Credentials vulnerability in multiple products
A vulnerability was found in Deye/Revolt/Bosswerk Inverter MW3_15U_5406_1.47/MW3_15U_5406_1.471.
6.8
2023-02-11 CVE-2022-34386 Use of Hard-coded Credentials vulnerability in Dell products
Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain cryptographic weakness vulnerability.
local
low complexity
dell CWE-798
5.5
2023-02-11 CVE-2022-34449 Use of Hard-coded Credentials vulnerability in Dell Powerpath Management Appliance 3.2/3.3
PowerPath Management Appliance with versions 3.3 & 3.2* contains a Hardcoded Cryptographic Keys vulnerability.
local
low complexity
dell CWE-798
6.0
2023-02-10 CVE-2022-45766 Use of Hard-coded Credentials vulnerability in Keystorage Global Facilities Management Software 3.0
Hardcoded credentials in Global Facilities Management Software (GFMS) Version 3 software distributed by Key Systems Management permits remote attackers to impact availability, confidentiality, accessibility and dependability of electronic key boxes.
network
low complexity
keystorage CWE-798
critical
9.1
2023-02-09 CVE-2023-21426 Use of Hard-coded Credentials vulnerability in Samsung Android 10.0
Hardcoded AES key to encrypt cardemulation PINs in NFC prior to SMR Jan-2023 Release 1 allows attackers to access cardemulation PIN.
local
low complexity
samsung CWE-798
5.5