Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2022-07-13 CVE-2022-35857 Use of Hard-coded Credentials vulnerability in Kvf-Admin Project Kvf-Admin 20220212
kvf-admin through 2022-02-12 allows remote attackers to execute arbitrary code because deserialization is mishandled.
network
low complexity
kvf-admin-project CWE-798
critical
9.8
2022-07-12 CVE-2020-4157 Use of Hard-coded Credentials vulnerability in IBM Qradar Network Security 5.4.0/5.5.0
IBM QRadar Network Security 5.4.0 and 5.5.0 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
ibm CWE-798
7.5
2022-07-11 CVE-2020-4150 Use of Hard-coded Credentials vulnerability in IBM Security Siteprotector System 3.1.1
IBM SiteProtector Appliance 3.1.1 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
ibm CWE-798
critical
9.8
2022-07-04 CVE-2022-34151 Use of Hard-coded Credentials vulnerability in Omron products
Use of hard-coded credentials vulnerability exists in Machine automation controller NJ series all models V 1.48 and earlier, Machine automation controller NX7 series all models V1.28 and earlier, Machine automation controller NX1 series all models V1.48 and earlier, Automation software 'Sysmac Studio' all models V1.49 and earlier, and Programmable Terminal (PT) NA series NA5-15W/NA5-12W/NA5-9W/NA5-7W models Runtime V1.15 and earlier, which may allow a remote attacker who successfully obtained the user credentials by analyzing the affected product to access the controller.
network
high complexity
omron CWE-798
8.1
2022-06-29 CVE-2021-40597 Use of Hard-coded Credentials vulnerability in Edimax Ic-3140W Firmware 3.11
The firmware of EDIMAX IC-3140W Version 3.11 is hardcoded with Administrator username and password.
network
low complexity
edimax CWE-798
critical
9.8
2022-06-28 CVE-2022-30997 Use of Hard-coded Credentials vulnerability in Yokogawa Stardom FCJ Firmware and Stardom FCN Firmware
Use of hard-coded credentials vulnerability exists in STARDOM FCN Controller and FCJ Controller R4.10 to R4.31, which may allow an attacker with an administrative privilege to read/change configuration settings or update the controller with tampered firmware.
network
low complexity
yokogawa CWE-798
7.2
2022-06-19 CVE-2022-34005 Use of Hard-coded Credentials vulnerability in Southrivertech Titan FTP Server Nextgen
An issue was discovered in TitanFTP (aka Titan FTP) NextGen before 1.2.1050.
network
low complexity
southrivertech CWE-798
critical
9.8
2022-06-17 CVE-2022-30422 Use of Hard-coded Credentials vulnerability in Proietti Planet Time Enterprise
Proietti Tech srl Planet Time Enterprise 4.2.0.1,4.2.0.0,4.1.0.0,4.0.0.0,3.3.1.0,3.3.0.0 is vulnerable to Remote code execution via the Viewstate parameter.
network
low complexity
proietti CWE-798
critical
9.8
2022-06-17 CVE-2021-40903 Use of Hard-coded Credentials vulnerability in Antminer Monitor Project Antminer Monitor 0.50.0
A vulnerability in Antminer Monitor 0.50.0 exists because of backdoor or misconfiguration inside a settings file in flask server.
network
low complexity
antminer-monitor-project CWE-798
critical
9.8
2022-06-17 CVE-2020-36547 Use of Hard-coded Credentials vulnerability in GE Voluson S8 Firmware
A vulnerability was found in GE Voluson S8.
local
low complexity
ge CWE-798
7.8