Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2024-09-12 CVE-2024-28990 Use of Hard-coded Credentials vulnerability in Solarwinds Access Rights Manager
SolarWinds Access Rights Manager (ARM) was found to contain a hard-coded credential authentication bypass vulnerability.
network
low complexity
solarwinds CWE-798
critical
9.8
2024-09-10 CVE-2024-39582 Use of Hard-coded Credentials vulnerability in Dell Insightiq 5.0
Dell PowerScale InsightIQ, version 5.0, contain a Use of hard coded Credentials vulnerability.
local
low complexity
dell CWE-798
4.4
2024-09-06 CVE-2024-39585 Use of Hard-coded Credentials vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x, contain(s) an Use of Hard-coded Password vulnerability.
network
low complexity
dell CWE-798
8.1
2024-09-04 CVE-2024-20439 Use of Hard-coded Credentials vulnerability in Cisco Smart License Utility
A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker to log in to an affected system by using a static administrative credential. This vulnerability is due to an undocumented static user credential for an administrative account.
network
low complexity
cisco CWE-798
critical
9.8
2024-08-29 CVE-2024-35118 Use of Hard-coded Credentials vulnerability in IBM Maas360 MDM
IBM MaaS360 for Android 6.31 through 8.60 is using hard coded credentials that can be obtained by a user with physical access to the device.
low complexity
ibm CWE-798
4.6
2024-08-27 CVE-2024-6633 Use of Hard-coded Credentials vulnerability in Fortra Filecatalyst Workflow
The default credentials for the setup HSQL database (HSQLDB) for FileCatalyst Workflow are published in a vendor knowledgebase article.
network
low complexity
fortra CWE-798
critical
9.8
2024-08-26 CVE-2024-8162 Use of Hard-coded Credentials vulnerability in Totolink T10 Firmware 4.1.8Cu.5207
A vulnerability classified as critical has been found in TOTOLINK T10 AC1200 4.1.8cu.5207.
network
low complexity
totolink CWE-798
critical
9.8
2024-08-24 CVE-2024-8135 Use of Hard-coded Credentials vulnerability in Gotribe
A vulnerability classified as critical has been found in Go-Tribe gotribe up to cd3ccd32cd77852c9ea73f986eaf8c301cfb6310.
network
low complexity
gotribe CWE-798
critical
9.8
2024-08-20 CVE-2024-8005 Use of Hard-coded Credentials vulnerability in Demozx GF CMS
A vulnerability was found in demozx gf_cms 1.0/1.0.1.
network
low complexity
demozx CWE-798
critical
9.8
2024-08-16 CVE-2024-42638 Use of Hard-coded Credentials vulnerability in H3C Magic B1St Firmware 100R012
H3C Magic B1ST v100R012 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.
network
low complexity
h3c CWE-798
critical
9.8