Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2021-05-28 CVE-2020-1716 Use of Hard-coded Credentials vulnerability in Ceph Ceph-Ansible
A flaw was found in the ceph-ansible playbook where it contained hardcoded passwords that were being used as default passwords while deploying Ceph services.
network
low complexity
ceph CWE-798
8.8
2021-05-27 CVE-2021-32459 Use of Hard-coded Credentials vulnerability in Trendmicro Home Network Security
Trend Micro Home Network Security version 6.6.604 and earlier contains a hard-coded password vulnerability in the log collection server which could allow an attacker to use a specially crafted network request to lead to arbitrary authentication.
network
low complexity
trendmicro CWE-798
6.5
2021-05-24 CVE-2021-20426 Use of Hard-coded Credentials vulnerability in IBM Security Guardium 11.2
IBM Security Guardium 11.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
ibm CWE-798
critical
9.8
2021-05-20 CVE-2021-29691 Use of Hard-coded Credentials vulnerability in IBM Security Identity Manager 7.0.2
IBM Security Identity Manager 7.0.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
ibm CWE-798
7.5
2021-05-20 CVE-2021-28111 Use of Hard-coded Credentials vulnerability in Draeger X-Dock Firmware
Draeger X-Dock Firmware before 03.00.13 has Hard-Coded Credentials, leading to remote code execution by an authenticated attacker.
network
low complexity
draeger CWE-798
8.8
2021-05-17 CVE-2021-32454 Use of Hard-coded Credentials vulnerability in Sitel-Sa Remote Cap/Prx Firmware 5.2.01
SITEL CAP/PRX firmware version 5.2.01 makes use of a hardcoded password.
low complexity
sitel-sa CWE-798
8.8
2021-05-13 CVE-2021-20025 Use of Hard-coded Credentials vulnerability in Sonicwall Email Security Virtual Appliance
SonicWall Email Security Virtual Appliance version 10.0.9 and earlier versions contain a default username and a password that is used at initial setup.
local
low complexity
sonicwall CWE-798
7.8
2021-05-07 CVE-2021-27437 Use of Hard-coded Credentials vulnerability in Advantech Wise-Paas/Rmm 3.3.29
The affected product allows attackers to obtain sensitive information from the WISE-PaaS dashboard.
network
low complexity
advantech CWE-798
critical
9.1
2021-05-05 CVE-2021-20401 Use of Hard-coded Credentials vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.3 and 7.4 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
local
low complexity
ibm CWE-798
7.8
2021-05-05 CVE-2020-4932 Use of Hard-coded Credentials vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.3 and 7.4 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
local
low complexity
ibm CWE-798
7.8