Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2024-01-29 CVE-2023-51840 Use of Hard-coded Credentials vulnerability in Html-Js Doracms 2.1.8
DoraCMS 2.1.8 is vulnerable to Use of Hard-coded Cryptographic Key.
network
low complexity
html-js CWE-798
critical
9.8
2024-01-27 CVE-2023-6482 Use of Hard-coded Credentials vulnerability in Synaptics Fingerprint Driver 6.0.00.1111
Use of encryption key derived from static information in Synaptics Fingerprint Driver allows an attacker to set up a TLS session with the fingerprint sensor and send restricted commands to the fingerprint sensor. This may allow an attacker, who has physical access to the sensor, to enroll a fingerprint into the template database.
low complexity
synaptics CWE-798
5.2
2024-01-26 CVE-2024-23619 Use of Hard-coded Credentials vulnerability in IBM Merge Efilm Workstation 4.2
A hardcoded credential vulnerability exists in IBM Merge Healthcare eFilm Workstation.
network
low complexity
ibm CWE-798
critical
9.8
2024-01-24 CVE-2024-23453 Use of Hard-coded Credentials vulnerability in Spooncast Spoon 7.11.1/8.6.0
Android Spoon application version 7.11.1 to 8.6.0 uses hard-coded credentials, which may allow a local attacker to retrieve the hard-coded API key when the application binary is reverse-engineered.
local
low complexity
spooncast CWE-798
5.5
2024-01-23 CVE-2024-22768 Use of Hard-coded Credentials vulnerability in Hitron Systems DVR Hvr-4781 Firmware
Improper Input Validation in Hitron Systems DVR HVR-4781 1.03~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
network
low complexity
hitron-systems CWE-798
7.5
2024-01-23 CVE-2024-22769 Use of Hard-coded Credentials vulnerability in Hitron Systems DVR Hvr-4781 Firmware
Improper Input Validation in Hitron Systems DVR HVR-8781 1.03~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
network
low complexity
hitron-systems CWE-798
7.5
2024-01-23 CVE-2024-22770 Use of Hard-coded Credentials vulnerability in Hitron Systems DVR Hvr-4781 Firmware
Improper Input Validation in Hitron Systems DVR HVR-16781 1.03~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
network
low complexity
hitron-systems CWE-798
7.5
2024-01-23 CVE-2024-22771 Use of Hard-coded Credentials vulnerability in Hitron Systems DVR Hvr-4781 Firmware
Improper Input Validation in Hitron Systems DVR LGUVR-4H 1.02~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
network
low complexity
hitron-systems CWE-798
7.5
2024-01-23 CVE-2024-22772 Use of Hard-coded Credentials vulnerability in Hitron Systems DVR Hvr-4781 Firmware
Improper Input Validation in Hitron Systems DVR LGUVR-8H 1.02~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
network
low complexity
hitron-systems CWE-798
7.5
2024-01-23 CVE-2024-23842 Use of Hard-coded Credentials vulnerability in Hitron Systems DVR Hvr-4781 Firmware
Improper Input Validation in Hitron Systems DVR LGUVR-16H 1.02~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
network
low complexity
hitron-systems CWE-798
7.5