Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2020-02-19 CVE-2014-9614 Use of Hard-coded Credentials vulnerability in Netsweeper
The Web Panel in Netsweeper before 4.0.5 has a default password of branding for the branding account, which makes it easier for remote attackers to obtain access via a request to webadmin/.
network
low complexity
netsweeper CWE-798
critical
9.8
2020-02-14 CVE-2019-4392 Use of Hard-coded Credentials vulnerability in Hcltech Appscan 9.0.3.13
HCL AppScan Standard Edition 9.0.3.13 and earlier uses hard-coded credentials which can be exploited by attackers to get unauthorized access to the system.
network
low complexity
hcltech CWE-798
critical
9.8
2020-02-13 CVE-2013-6362 Use of Hard-coded Credentials vulnerability in Xerox products
Xerox ColorCube and WorkCenter devices in 2013 had hardcoded FTP and shell user accounts.
network
low complexity
xerox CWE-798
critical
9.8
2020-02-13 CVE-2013-6277 Use of Hard-coded Credentials vulnerability in Qnap Viocard 300 Firmware Rsb3722/Rsb4631
QNAP VioCard 300 has hardcoded RSA private keys.
network
low complexity
qnap CWE-798
7.5
2020-02-13 CVE-2020-8964 Use of Hard-coded Credentials vulnerability in Timetoolsltd products
TimeTools SC7105 1.0.007, SC9205 1.0.007, SC9705 1.0.007, SR7110 1.0.007, SR9210 1.0.007, SR9750 1.0.007, SR9850 1.0.007, T100 1.0.003, T300 1.0.003, and T550 1.0.003 devices allow remote attackers to bypass authentication by placing t3axs=TiMEtOOlsj7G3xMm52wB in a t3.cgi request, aka a "hardcoded cookie."
network
low complexity
timetoolsltd CWE-798
critical
9.8
2020-02-12 CVE-2013-6236 Use of Hard-coded Credentials vulnerability in Izoncam Izon IP Firmware 2.0.2
IZON IP 2.0.2: hard-coded password vulnerability
network
low complexity
izoncam CWE-798
critical
9.8
2020-02-10 CVE-2012-6611 Use of Hard-coded Credentials vulnerability in Polycom HDX System Software
An issue was discovered in Polycom Web Management Interface G3/HDX 8000 HD with Durango 2.6.0 4740 software and embedded Polycom Linux Development Platform 2.14.g3.
network
low complexity
polycom CWE-798
critical
9.8
2020-02-08 CVE-2012-4381 Use of Hard-coded Credentials vulnerability in Mediawiki
MediaWiki before 1.18.5, and 1.19.x before 1.19.2 saves passwords in the local database, (1) which could make it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack or, (2) when an authentication plugin returns a false in the strict function, could allow remote attackers to use old passwords for non-existing accounts in an external authentication system via unspecified vectors.
network
high complexity
mediawiki CWE-798
8.1
2020-02-06 CVE-2020-8657 Use of Hard-coded Credentials vulnerability in Eyesofnetwork 5.30
An issue was discovered in EyesOfNetwork 5.3.
network
low complexity
eyesofnetwork CWE-798
critical
9.8
2020-02-04 CVE-2019-4675 Use of Hard-coded Credentials vulnerability in IBM Security Identity Manager 7.0.1
IBM Security Identity Manager 7.0.1 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
ibm CWE-798
critical
9.8