Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2024-10-09 CVE-2024-7293 Weak Password Requirements vulnerability in Progress Telerik Reporting
In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), a password brute forcing attack is possible through weak password requirements.
network
low complexity
progress CWE-521
8.8
2024-09-26 CVE-2024-47121 Weak Password Requirements vulnerability in Gotenna PRO
The goTenna Pro App uses a weak password for sharing encryption keys via the key broadcast method.
high complexity
gotenna CWE-521
5.3
2024-09-22 CVE-2024-47221 Weak Password Requirements vulnerability in Rapidscada Rapid Scada
CheckUser in ScadaServerEngine/MainLogic.cs in Rapid SCADA through 5.8.4 allows an empty password.
network
low complexity
rapidscada CWE-521
7.5
2024-09-12 CVE-2021-38133 Weak Password Requirements vulnerability in Microfocus Edirectory
Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory.
network
low complexity
microfocus CWE-521
6.5
2024-08-13 CVE-2024-40697 Weak Password Requirements vulnerability in IBM Common Licensing 9.0
IBM Common Licensing 9.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
7.5
2024-08-13 CVE-2024-41683 Weak Password Requirements vulnerability in Siemens Location Intelligence
A vulnerability has been identified in Location Intelligence family (All versions < V4.4).
network
low complexity
siemens CWE-521
5.3
2024-06-28 CVE-2024-35137 Weak Password Requirements vulnerability in IBM Security Access Manager 10.0.0.0/10.0.7.1
IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to possibly elevate their privileges due to sensitive configuration information being exposed.
local
low complexity
ibm CWE-521
6.2
2024-02-03 CVE-2023-43016 Weak Password Requirements vulnerability in IBM products
IBM Security Access Manager Container (IBM Security Verify Access Appliance 10.0.0.0 through 10.0.6.1 and IBM Security Verify Access Docker 10.0.0.0 through 10.0.6.1) could allow a remote user to log into the server due to a user account with an empty password.
network
low complexity
ibm CWE-521
7.3
2024-01-09 CVE-2023-49238 Weak Password Requirements vulnerability in Gradle Enterprise
In Gradle Enterprise before 2023.1, a remote attacker may be able to gain access to a new installation (in certain installation scenarios) because of a non-unique initial system user password.
network
low complexity
gradle CWE-521
critical
9.8
2023-12-04 CVE-2023-24049 Weak Password Requirements vulnerability in Connectize Ac21000 G6 Firmware 641.139.1.1256
An issue was discovered on Connectize AC21000 G6 641.139.1.1256 allows attackers to gain escalated privileges on the device via poor credential management.
network
low complexity
connectize CWE-521
critical
9.8