Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2024-09-16 CVE-2024-45698 Use of Hard-coded Credentials vulnerability in Dlink Dir-X4860 Firmware 1.00/1.04
Certain models of D-Link wireless routers do not properly validate user input in the telnet service, allowing unauthenticated remote attackers to use hard-coded credentials to log into telnet and inject arbitrary OS commands, which can then be executed on the device.
network
low complexity
dlink CWE-798
critical
9.8
2024-09-13 CVE-2024-6656 Use of Hard-coded Credentials vulnerability in Tnbmobil Cockpit
Use of Hard-coded Credentials vulnerability in TNB Mobile Solutions Cockpit Software allows Read Sensitive Strings Within an Executable.This issue affects Cockpit Software: before v2.13.
network
low complexity
tnbmobil CWE-798
critical
9.8
2024-09-12 CVE-2024-28990 Use of Hard-coded Credentials vulnerability in Solarwinds Access Rights Manager
SolarWinds Access Rights Manager (ARM) was found to contain a hard-coded credential authentication bypass vulnerability.
network
low complexity
solarwinds CWE-798
critical
9.8
2024-09-10 CVE-2024-39582 Use of Hard-coded Credentials vulnerability in Dell Insightiq 5.0
Dell PowerScale InsightIQ, version 5.0, contain a Use of hard coded Credentials vulnerability.
local
low complexity
dell CWE-798
4.4
2024-09-06 CVE-2024-39585 Use of Hard-coded Credentials vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x, contain(s) an Use of Hard-coded Password vulnerability.
network
low complexity
dell CWE-798
8.1
2024-09-04 CVE-2024-20439 Use of Hard-coded Credentials vulnerability in Cisco Smart License Utility
A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker to log in to an affected system by using a static administrative credential. This vulnerability is due to an undocumented static user credential for an administrative account.
network
low complexity
cisco CWE-798
critical
9.8
2024-08-29 CVE-2024-35118 Use of Hard-coded Credentials vulnerability in IBM Maas360 MDM
IBM MaaS360 for Android 6.31 through 8.60 is using hard coded credentials that can be obtained by a user with physical access to the device.
low complexity
ibm CWE-798
4.6
2024-08-27 CVE-2024-6633 Use of Hard-coded Credentials vulnerability in Fortra Filecatalyst Workflow
The default credentials for the setup HSQL database (HSQLDB) for FileCatalyst Workflow are published in a vendor knowledgebase article.
network
low complexity
fortra CWE-798
critical
9.8
2024-08-26 CVE-2024-8162 Use of Hard-coded Credentials vulnerability in Totolink T10 Firmware 4.1.8Cu.5207
A vulnerability classified as critical has been found in TOTOLINK T10 AC1200 4.1.8cu.5207.
network
low complexity
totolink CWE-798
critical
9.8
2024-08-24 CVE-2024-8135 Use of Hard-coded Credentials vulnerability in Gotribe
A vulnerability classified as critical has been found in Go-Tribe gotribe up to cd3ccd32cd77852c9ea73f986eaf8c301cfb6310.
network
low complexity
gotribe CWE-798
critical
9.8