Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2022-06-14 CVE-2022-26476 Use of Hard-coded Credentials vulnerability in Siemens products
A vulnerability has been identified in Spectrum Power 4 (All versions using Shared HIS), Spectrum Power 7 (All versions using Shared HIS), Spectrum Power MGMS (All versions using Shared HIS).
low complexity
siemens CWE-798
8.8
2022-06-13 CVE-2022-29525 Use of Hard-coded Credentials vulnerability in Rakuten Casa Apfv141/Apfv200
Rakuten Casa version AP_F_V1_4_1 or AP_F_V2_0_0 uses a hard-coded credential which may allow a remote unauthenticated attacker to log in with the root privilege and perform an arbitrary operation.
network
low complexity
rakuten CWE-798
critical
9.8
2022-06-11 CVE-2017-20039 Use of Hard-coded Credentials vulnerability in Sicunet Access Control 0.3205Z
A vulnerability was found in SICUNET Access Controller 0.32-05z.
network
low complexity
sicunet CWE-798
critical
9.8
2022-06-09 CVE-2022-25806 Use of Hard-coded Credentials vulnerability in Igel Universal Management Suite 6.07.100
An issue was discovered in the IGEL Universal Management Suite (UMS) 6.07.100.
network
low complexity
igel CWE-798
8.8
2022-06-09 CVE-2022-25807 Use of Hard-coded Credentials vulnerability in Igel Universal Management Suite 6.07.100
An issue was discovered in the IGEL Universal Management Suite (UMS) 6.07.100.
local
low complexity
igel CWE-798
5.5
2022-06-03 CVE-2021-42892 Use of Hard-coded Credentials vulnerability in Totolink Ex1200T Firmware 4.1.2Cu.5215
In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can start telnet without authorization because the default username and password exists in the firmware.
network
low complexity
totolink CWE-798
4.3
2022-06-02 CVE-2022-31460 Use of Hard-coded Credentials vulnerability in Owllabs Meeting OWL PRO Firmware 5.2.0.15
Owl Labs Meeting Owl 5.2.0.15 allows attackers to activate Tethering Mode with hard-coded hoothoot credentials via a certain c 150 value.
low complexity
owllabs CWE-798
7.4
2022-06-02 CVE-2022-31462 Use of Hard-coded Credentials vulnerability in Owllabs Meeting OWL PRO Firmware 5.2.0.15
Owl Labs Meeting Owl 5.2.0.15 allows attackers to control the device via a backdoor password (derived from the serial number) that can be found in Bluetooth broadcast data.
low complexity
owllabs CWE-798
8.8
2022-06-02 CVE-2022-28605 Use of Hard-coded Credentials vulnerability in Linkplay Sound BAR 1.0
Hardcoded admin token in SoundBar apps in Linkplay SDK 1.00 allows remote attackers to gain admin privilege access in linkplay antifactory
network
low complexity
linkplay CWE-798
critical
9.8
2022-06-02 CVE-2022-29730 Use of Hard-coded Credentials vulnerability in USR products
USR IOT 4G LTE Industrial Cellular VPN Router v1.0.36 was discovered to contain hard-coded credentials for its highest privileged account.
network
low complexity
usr CWE-798
critical
9.8