Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2024-06-16 CVE-2024-38466 Use of Hard-coded Credentials vulnerability in Guoxinled Synthesis Image System
Shenzhen Guoxin Synthesis image system before 8.3.0 has a 123456Qw default password.
network
low complexity
guoxinled CWE-798
critical
9.8
2024-06-10 CVE-2024-1228 Use of Hard-coded Credentials vulnerability in Eurosoft Przychodnia
Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database.
network
low complexity
eurosoft CWE-798
critical
9.8
2024-06-10 CVE-2024-3699 Use of Hard-coded Credentials vulnerability in Dreryk Gabinet 7.0.0.0
Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database.
network
low complexity
dreryk CWE-798
critical
9.8
2024-06-10 CVE-2024-3700 Use of Hard-coded Credentials vulnerability in Estomed Simple Care
Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database.
network
low complexity
estomed CWE-798
critical
9.8
2024-05-03 CVE-2023-51629 Use of Hard-coded Credentials vulnerability in Dlink Dcs-8300Lhv2 Firmware
D-Link DCS-8300LHV2 ONVIF Hardcoded PIN Authentication Bypass Vulnerability.
low complexity
dlink CWE-798
8.8
2024-02-07 CVE-2023-38995 Use of Hard-coded Credentials vulnerability in Schuhfried 8.22.00
An issue in SCHUHFRIED v.8.22.00 allows remote attacker to obtain the database password via crafted curl command.
network
low complexity
schuhfried CWE-798
critical
9.8
2024-02-06 CVE-2024-22853 Use of Hard-coded Credentials vulnerability in Dlink Go-Rt-Ac750 Firmware 101B03
D-LINK Go-RT-AC750 GORTAC750_A1_FW_v101b03 has a hardcoded password for the Alphanetworks account, which allows remote attackers to obtain root access via a telnet session.
network
low complexity
dlink CWE-798
critical
9.8
2024-02-02 CVE-2024-21764 Use of Hard-coded Credentials vulnerability in Rapidscada Rapid Scada
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, the product uses hard-coded credentials, which may allow an attacker to connect to a specific port.
network
low complexity
rapidscada CWE-798
critical
9.8
2024-02-01 CVE-2023-46706 Use of Hard-coded Credentials vulnerability in Machinesense Feverwarn Firmware
Multiple MachineSense devices have credentials unable to be changed by the user or administrator.
network
low complexity
machinesense CWE-798
critical
9.8
2024-01-30 CVE-2024-24324 Use of Hard-coded Credentials vulnerability in Totolink A8000Ru Firmware 7.1Cu.643B20200521
TOTOLINK A8000RU v7.1cu.643_B20200521 was discovered to contain a hardcoded password for root stored in /etc/shadow.
network
low complexity
totolink CWE-798
critical
9.8