Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2021-12-21 CVE-2021-44207 Use of Hard-coded Credentials vulnerability in Acclaimsystems Usaherds
Acclaim USAHERDS through 7.4.0.1 uses hard-coded credentials.
network
high complexity
acclaimsystems CWE-798
8.1
2021-12-08 CVE-2021-26108 Use of Hard-coded Credentials vulnerability in Fortinet Fortios
A use of hard-coded cryptographic key vulnerability in the SSLVPN of FortiOS before 7.0.1 may allow an attacker to retrieve the key by reverse engineering.
network
low complexity
fortinet CWE-798
7.5
2021-12-06 CVE-2021-43044 Use of Hard-coded Credentials vulnerability in Kaseya Unitrends Backup
An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5.
network
low complexity
kaseya CWE-798
critical
9.8
2021-11-30 CVE-2021-43282 Use of Hard-coded Credentials vulnerability in Govicture Wr1200 Firmware 1.0.3
An issue was discovered on Victure WR1200 devices through 1.0.3.
low complexity
govicture CWE-798
6.5
2021-11-30 CVE-2021-43284 Use of Hard-coded Credentials vulnerability in Govicture Wr1200 Firmware 1.0.3
An issue was discovered on Victure WR1200 devices through 1.0.3.
local
low complexity
govicture CWE-798
7.8
2021-11-26 CVE-2021-26611 Use of Hard-coded Credentials vulnerability in HEJ Hejhome Gkw-Ic052 Firmware
HejHome GKW-IC052 IP Camera contained a hard-coded credentials vulnerability.
network
low complexity
hej CWE-798
critical
9.8
2021-11-10 CVE-2021-40519 Use of Hard-coded Credentials vulnerability in Airangel products
Airangel HSMX Gateway devices through 5.2.04 have Hard-coded Database Credentials.
network
low complexity
airangel CWE-798
critical
10.0
2021-11-10 CVE-2021-43136 Use of Hard-coded Credentials vulnerability in Formalms
An authentication bypass issue in FormaLMS <= 2.4.4 allows an attacker to bypass the authentication mechanism and obtain a valid access to the platform.
network
low complexity
formalms CWE-798
critical
9.8
2021-11-09 CVE-2021-43575 Use of Hard-coded Credentials vulnerability in KNX Engineering Tool Software 6 6.0.0
KNX ETS6 through 6.0.0 uses the hard-coded password ETS5Password, with a salt value of Ivan Medvedev, allowing local users to read project information, a similar issue to CVE-2021-36799.
local
low complexity
knx CWE-798
5.5
2021-11-04 CVE-2021-40119 Use of Hard-coded Credentials vulnerability in Cisco Policy Suite
A vulnerability in the key-based SSH authentication mechanism of Cisco Policy Suite could allow an unauthenticated, remote attacker to log in to an affected system as the root user.
network
low complexity
cisco CWE-798
critical
9.8