Vulnerabilities > Use of Insufficiently Random Values

DATE CVE VULNERABILITY TITLE RISK
2023-02-10 CVE-2022-43501 Use of Insufficiently Random Values vulnerability in Elwsc products
KASAGO TCP/IP stack provided by Zuken Elmic generates ISNs(Initial Sequence Number) for TCP connections from an insufficiently random source.
network
low complexity
elwsc CWE-330
critical
9.1
2023-01-20 CVE-2023-22912 Use of Insufficiently Random Values vulnerability in Mediawiki
An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1.
network
low complexity
mediawiki CWE-330
5.3
2023-01-12 CVE-2023-22601 Use of Insufficiently Random Values vulnerability in Inhandnetworks Inrouter302 Firmware and Inrouter615-S Firmware
InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r5542, contain vulnerability CWE-330: Use of Insufficiently Random Values. They do not properly randomize MQTT ClientID parameters.
network
low complexity
inhandnetworks CWE-330
8.6
2023-01-12 CVE-2017-5242 Use of Insufficiently Random Values vulnerability in Rapid7 Insightvm
Nexpose and InsightVM virtual appliances downloaded between April 5th, 2017 and May 3rd, 2017 contain identical SSH host keys.
network
high complexity
rapid7 CWE-330
7.7
2023-01-11 CVE-2021-26407 Use of Insufficiently Random Values vulnerability in AMD Romepi Firmware
A randomly generated Initialization Vector (IV) may lead to a collision of IVs with the same key potentially resulting in information disclosure.
local
low complexity
amd CWE-330
5.5
2022-12-27 CVE-2019-25089 Use of Insufficiently Random Values vulnerability in Muon Project Muon 0.1.1
A vulnerability has been found in Morgawr Muon 0.1.1 and classified as problematic.
network
low complexity
muon-project CWE-330
7.5
2022-12-25 CVE-2021-4277 Use of Insufficiently Random Values vulnerability in Utils Project Utils
A vulnerability, which was classified as problematic, has been found in fredsmith utils.
network
low complexity
utils-project CWE-330
5.3
2022-12-18 CVE-2021-4248 Use of Insufficiently Random Values vulnerability in Kapetan DNS Project Kapetan DNS
A vulnerability was found in kapetan dns up to 6.1.0.
network
low complexity
kapetan-dns-project CWE-330
critical
9.8
2022-12-13 CVE-2022-46353 A vulnerability has been identified in SCALANCE X204RNA (HSR) (All versions < V3.2.7), SCALANCE X204RNA (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (HSR) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP/HSR) (All versions < V3.2.7).
network
low complexity
CWE-330
critical
9.8
2022-11-15 CVE-2021-4240 Use of Insufficiently Random Values vulnerability in PHPservermonitor PHP Server Monitor
A vulnerability, which was classified as problematic, was found in phpservermon.
network
low complexity
phpservermonitor CWE-330
5.3