Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2021-02-01 CVE-2019-20471 Use of Hard-coded Credentials vulnerability in Tk-Star Q90 Junior GPS Horloge Firmware 3.1042.9.8656
An issue was discovered on TK-Star Q90 Junior GPS horloge 3.1042.9.8656 devices.
local
low complexity
tk-star CWE-798
7.8
2021-02-01 CVE-2020-15833 Use of Hard-coded Credentials vulnerability in Mofinetwork Mofi4500-4Gxelte Firmware 4.1.5Std
An issue was discovered on Mofi Network MOFI4500-4GXeLTE 4.1.5-std devices.
network
low complexity
mofinetwork CWE-798
critical
9.8
2021-02-01 CVE-2020-13858 Use of Hard-coded Credentials vulnerability in Mofinetwork Mofi4500-4Gxelte Firmware 3.6.1Std/4.0.8Std
An issue was discovered on Mofi Network MOFI4500-4GXeLTE 3.6.1-std and 4.0.8-std devices.
network
low complexity
mofinetwork CWE-798
critical
9.8
2021-01-26 CVE-2020-6779 Use of Hard-coded Credentials vulnerability in Bosch Fsm-2500 Firmware and Fsm-5000 Firmware
Use of Hard-coded Credentials in the database of Bosch FSM-2500 server and Bosch FSM-5000 server up to and including version 5.2 allows an unauthenticated remote attacker to log into the database with admin-privileges.
network
low complexity
bosch CWE-798
critical
10.0
2021-01-26 CVE-2020-28999 Use of Hard-coded Credentials vulnerability in Mygeeni Gnc-Cw013 Firmware 1.8.1
An issue was discovered in Apexis Streaming Video Web Application on Geeni GNC-CW013 doorbell 1.8.1 devices.
network
low complexity
mygeeni CWE-798
7.2
2021-01-26 CVE-2020-28998 Use of Hard-coded Credentials vulnerability in Mygeeni Gnc-Cw013 Firmware 1.8.1
An issue was discovered on Geeni GNC-CW013 doorbell 1.8.1 devices.
network
low complexity
mygeeni CWE-798
critical
9.8
2021-01-26 CVE-2020-25173 Use of Hard-coded Credentials vulnerability in Reolink products
An attacker with local network access can obtain a fixed cryptography key which may allow for further compromise of Reolink P2P cameras outside of local network access
local
low complexity
reolink CWE-798
7.8
2021-01-20 CVE-2020-4983 Use of Hard-coded Credentials vulnerability in IBM Spectrum LSF and Spectrum LSF Suite
IBM Spectrum LSF 10.1 and IBM Spectrum LSF Suite 10.2 could allow a user on the local network who has privileges to submit LSF jobs to execute arbitrary commands.
local
low complexity
ibm CWE-798
7.8
2021-01-19 CVE-2020-27256 Use of Hard-coded Credentials vulnerability in Sooil products
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a hard-coded physician PIN in the physician menu of the insulin pump allows attackers with physical access to change insulin therapy settings.
low complexity
sooil CWE-798
6.8
2021-01-19 CVE-2020-35929 Use of Hard-coded Credentials vulnerability in Kaspersky Tinycheck
In TinyCheck before commits 9fd360d and ea53de8, the installation script of the tool contained hard-coded credentials to the backend part of the tool.
network
low complexity
kaspersky CWE-798
critical
9.8