Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2020-09-22 CVE-2020-4622 Use of Hard-coded Credentials vulnerability in IBM Data Risk Manager
IBM Data Risk Manager (iDNA) 2.0.6 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
ibm CWE-798
7.5
2020-09-22 CVE-2020-11857 Use of Hard-coded Credentials vulnerability in Microfocus Operation Bridge Reporter
An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier.
network
low complexity
microfocus CWE-798
critical
9.8
2020-09-14 CVE-2020-12789 Use of Hard-coded Credentials vulnerability in Microchip products
The Secure Monitor in Microchip Atmel ATSAMA5 products use a hardcoded key to encrypt and authenticate secure applets.
network
low complexity
microchip CWE-798
7.5
2020-09-14 CVE-2018-20432 Use of Hard-coded Credentials vulnerability in Dlink Covr-2600R Firmware and Covr-3902 Firmware
D-Link COVR-2600R and COVR-3902 Kit before 1.01b05Beta01 use hardcoded credentials for telnet connection, which allows unauthenticated attackers to gain privileged access to the router, and to extract sensitive data or modify the configuration.
network
low complexity
dlink CWE-798
critical
9.8
2020-09-11 CVE-2020-25256 Use of Hard-coded Credentials vulnerability in Hyland Onbase
An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below.
network
low complexity
hyland CWE-798
critical
9.1
2020-09-09 CVE-2018-17771 Use of Hard-coded Credentials vulnerability in Ingenico Telium 2 Firmware
Ingenico Telium 2 POS terminals have hardcoded FTP credentials.
low complexity
ingenico CWE-798
6.6
2020-09-09 CVE-2018-17767 Use of Hard-coded Credentials vulnerability in Ingenico Telium 2 Firmware
Ingenico Telium 2 POS terminals have hardcoded PPP credentials.
low complexity
ingenico CWE-798
6.8
2020-09-03 CVE-2020-24876 Use of Hard-coded Credentials vulnerability in Pancakeapp Pancake
Use of a hard-coded cryptographic key in Pancake versions < 4.13.29 allows an attacker to forge session cookies, which may lead to remote privilege escalation.
network
low complexity
pancakeapp CWE-798
critical
9.8
2020-08-31 CVE-2020-24115 Use of Hard-coded Credentials vulnerability in Online Book Store Project Online Book Store 1.0
In projectworlds Online Book Store 1.0 Use of Hard-coded Credentials in source code leads to admin panel access.
network
low complexity
online-book-store-project CWE-798
critical
9.8
2020-08-26 CVE-2019-4694 Use of Hard-coded Credentials vulnerability in IBM products
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
ibm CWE-798
critical
9.8