Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2022-02-11 CVE-2022-22766 Use of Hard-coded Credentials vulnerability in BD products
Hardcoded credentials are used in specific BD Pyxis products.
local
low complexity
bd CWE-798
5.5
2022-02-11 CVE-2020-36062 Use of Hard-coded Credentials vulnerability in PHPgurukul Dairy Farm Shop Management System 1.0
Dairy Farm Shop Management System v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.
network
low complexity
phpgurukul CWE-798
critical
9.8
2022-02-09 CVE-2022-22813 Use of Hard-coded Credentials vulnerability in Schneider-Electric products
A CWE-798: Use of Hard-coded Credentials vulnerability exists.
network
low complexity
schneider-electric CWE-798
critical
9.8
2022-02-09 CVE-2021-45106 Use of Hard-coded Credentials vulnerability in Siemens Sicam Toolbox II
A vulnerability has been identified in SICAM TOOLBOX II (All versions).
network
low complexity
siemens CWE-798
6.5
2022-02-07 CVE-2021-42833 Use of Hard-coded Credentials vulnerability in Xylem Aquaview 1.60
A Use of Hardcoded Credentials vulnerability exists in AquaView versions 1.60, 7.x, and 8.x that could allow an authenticated local attacker to manipulate users and system settings.
local
low complexity
xylem CWE-798
8.8
2022-02-04 CVE-2022-22722 Use of Hard-coded Credentials vulnerability in Schneider-Electric Easergy P5 Firmware
A CWE-798: Use of Hard-coded Credentials vulnerability exists that could result in information disclosure.
high complexity
schneider-electric CWE-798
7.5
2022-02-04 CVE-2022-22987 Use of Hard-coded Credentials vulnerability in Advantech Adam-3600 Firmware 2.6.2
The affected product has a hardcoded private key available inside the project folder, which may allow an attacker to achieve Web Server login and perform further actions.
network
low complexity
advantech CWE-798
critical
9.8
2022-01-31 CVE-2021-42635 Use of Hard-coded Credentials vulnerability in Printerlogic web Stack 19.1.1.13
PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use a hardcoded APP_KEY value, leading to pre-auth remote code execution.
network
high complexity
printerlogic CWE-798
8.1
2022-01-31 CVE-2020-36064 Use of Hard-coded Credentials vulnerability in Online Course Registration Project Online Course Registration 1.0
Online Course Registration v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.
network
low complexity
online-course-registration-project CWE-798
critical
9.8
2022-01-28 CVE-2022-21199 Use of Hard-coded Credentials vulnerability in Reolink Rlc-410W Firmware 3.0.0.13620121102
An information disclosure vulnerability exists due to the hardcoded TLS key of reolink RLC-410W v3.0.0.136_20121102.
network
high complexity
reolink CWE-798
5.9