Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2020-06-16 CVE-2020-7492 Weak Password Requirements vulnerability in Schneider-Electric Gp-Pro EX Firmware 1.00/4.08.200/4.09.120
A CWE-521: Weak Password Requirements vulnerability exists in the GP-Pro EX V1.00 to V4.09.100 which could cause the discovery of the password when the user is entering the password because it is not masqueraded.
network
low complexity
schneider-electric CWE-521
6.5
2020-06-10 CVE-2019-4576 Weak Password Requirements vulnerability in IBM Qradar Network Packet Capture
IBM QRadar Network Packet Capture 7.3.0 - 7.3.3 Patch 1 and 7.4.0 GA does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
critical
9.8
2020-05-28 CVE-2020-4245 Weak Password Requirements vulnerability in IBM Security Identity Governance and Intelligence 5.2.6
IBM Security Identity Governance and Intelligence 5.2.6 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
7.5
2020-05-07 CVE-2019-18872 Weak Password Requirements vulnerability in Blaauwproducts Remote Kiln Control 3.0.0
Weak password requirements in Blaauw Remote Kiln Control through v3.00r4 allow a user to set short or guessable passwords (e.g., 1 or 1234).
network
low complexity
blaauwproducts CWE-521
7.5
2020-05-04 CVE-2020-8790 Weak Password Requirements vulnerability in Oklok Project Oklok 3.1.1
The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) has weak password requirements combined with improper restriction of excessive authentication attempts, which could allow a remote attacker to discover user credentials and obtain access via a brute force attack.
network
low complexity
oklok-project CWE-521
critical
9.8
2020-04-28 CVE-2017-18857 Weak Password Requirements vulnerability in Netgear Insight
The NETGEAR Insight application before 2.42 for Android and iOS is affected by password mismanagement.
network
low complexity
netgear CWE-521
critical
9.8
2020-04-21 CVE-2020-11966 Weak Password Requirements vulnerability in Evenroute Iqrouter Firmware 3.3.1
In IQrouter through 3.3.1, the Lua function reset_password in the web-panel allows remote attackers to change the root password arbitrarily.
network
low complexity
evenroute CWE-521
critical
9.8
2020-04-02 CVE-2019-19093 Weak Password Requirements vulnerability in Hitachienergy Esoms
eSOMS versions 4.0 to 6.0.3 do not enforce password complexity settings, potentially resulting in lower access security due to insecure user passwords.
network
low complexity
hitachienergy CWE-521
6.5
2020-03-24 CVE-2020-6991 Weak Password Requirements vulnerability in Moxa Eds-510E Firmware and Eds-G516E Firmware
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, weak password requirements may allow an attacker to gain access using brute force.
network
low complexity
moxa CWE-521
critical
9.8
2020-03-24 CVE-2020-6995 Weak Password Requirements vulnerability in Moxa products
In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, the application utilizes weak password requirements, which may allow an attacker to gain unauthorized access.
network
low complexity
moxa CWE-521
critical
9.8