Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2021-07-15 CVE-2021-34688 Use of Hard-coded Credentials vulnerability in Idrive Remotepc
iDrive RemotePC before 7.6.48 on Windows allows information disclosure.
local
low complexity
idrive CWE-798
3.3
2021-07-14 CVE-2021-20748 Use of Hard-coded Credentials vulnerability in Retty
Retty App for Android versions prior to 4.8.13 and Retty App for iOS versions prior to 4.11.14 uses a hard-coded API key for an external service.
network
low complexity
retty CWE-798
7.5
2021-07-08 CVE-2021-1574 Use of Hard-coded Credentials vulnerability in Cisco Business Process Automation
Multiple vulnerabilities in the web-based management interface of Cisco Business Process Automation (BPA) could allow an authenticated, remote attacker to elevate privileges to Administrator.
network
low complexity
cisco CWE-798
8.8
2021-07-08 CVE-2021-1576 Use of Hard-coded Credentials vulnerability in Cisco Business Process Automation
Multiple vulnerabilities in the web-based management interface of Cisco Business Process Automation (BPA) could allow an authenticated, remote attacker to elevate privileges to Administrator.
network
low complexity
cisco CWE-798
8.8
2021-07-07 CVE-2021-33218 Use of Hard-coded Credentials vulnerability in Commscope Ruckus IOT Controller 1.7.1.0
An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier.
network
low complexity
commscope CWE-798
critical
9.8
2021-07-07 CVE-2021-33219 Use of Hard-coded Credentials vulnerability in Commscope Ruckus IOT Controller 1.7.1.0
An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier.
network
low complexity
commscope CWE-798
critical
9.8
2021-07-07 CVE-2021-33220 Use of Hard-coded Credentials vulnerability in Commscope Ruckus IOT Controller 1.7.1.0
An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier.
local
low complexity
commscope CWE-798
7.8
2021-07-07 CVE-2021-32521 Use of Hard-coded Credentials vulnerability in Qsan Sanos, Storage Manager and Xevo
Use of MAC address as an authenticated password in QSAN Storage Manager, XEVO, SANOS allows local attackers to escalate privileges.
network
low complexity
qsan CWE-798
critical
9.8
2021-07-07 CVE-2021-32535 Use of Hard-coded Credentials vulnerability in Qsan Sanos 2.0.0
The vulnerability of hard-coded default credentials in QSAN SANOS allows unauthenticated remote attackers to obtain administrator’s permission and execute arbitrary functions.
network
low complexity
qsan CWE-798
critical
9.8
2021-07-06 CVE-2021-24005 Use of Hard-coded Credentials vulnerability in Fortinet Fortiauthenticator
Usage of hard-coded cryptographic keys to encrypt configuration files and debug logs in FortiAuthenticator versions before 6.3.0 may allow an attacker with access to the files or the CLI configuration to decrypt the sensitive data, via knowledge of the hard-coded key.
network
low complexity
fortinet CWE-798
7.5