Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2020-04-28 CVE-2017-18857 Weak Password Requirements vulnerability in Netgear Insight
The NETGEAR Insight application before 2.42 for Android and iOS is affected by password mismanagement.
network
low complexity
netgear CWE-521
critical
9.8
2020-04-21 CVE-2020-11966 Weak Password Requirements vulnerability in Evenroute Iqrouter Firmware 3.3.1
In IQrouter through 3.3.1, the Lua function reset_password in the web-panel allows remote attackers to change the root password arbitrarily.
network
low complexity
evenroute CWE-521
critical
9.8
2020-04-02 CVE-2019-19093 Weak Password Requirements vulnerability in Hitachienergy Esoms
eSOMS versions 4.0 to 6.0.3 do not enforce password complexity settings, potentially resulting in lower access security due to insecure user passwords.
network
low complexity
hitachienergy CWE-521
6.5
2020-03-24 CVE-2020-6991 Weak Password Requirements vulnerability in Moxa Eds-510E Firmware and Eds-G516E Firmware
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, weak password requirements may allow an attacker to gain access using brute force.
network
low complexity
moxa CWE-521
critical
9.8
2020-03-24 CVE-2020-6995 Weak Password Requirements vulnerability in Moxa products
In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, the application utilizes weak password requirements, which may allow an attacker to gain unauthorized access.
network
low complexity
moxa CWE-521
critical
9.8
2020-03-23 CVE-2019-6558 Weak Password Requirements vulnerability in Auto-Maskin products
In Auto-Maskin RP210E Versions 3.7 and prior, DCU210E Versions 3.7 and prior and Marine Observer Pro (Android App), the software contains a mechanism for users to recover or change their passwords without knowing the original password, but the mechanism is weak.
network
low complexity
auto-maskin CWE-521
7.5
2020-03-11 CVE-2019-9096 Weak Password Requirements vulnerability in Moxa products
An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1.
network
low complexity
moxa CWE-521
critical
9.8
2020-02-17 CVE-2020-9023 Weak Password Requirements vulnerability in Iteris Vantage Velocity Firmware 2.3.1/2.4.2
Iteris Vantage Velocity Field Unit 2.3.1 and 2.4.2 devices have two users that are not documented and are configured with weak passwords (User bluetooth, password bluetooth; User eclipse, password eclipse).
network
low complexity
iteris CWE-521
critical
9.8
2020-02-13 CVE-2020-8988 Weak Password Requirements vulnerability in Voatz 20200101
The Voatz application 2020-01-01 for Android allows only 100 million different PINs, which makes it easier for attackers (after using root access to make a copy of the local database) to discover login credentials and voting history via an offline brute-force approach.
network
high complexity
voatz CWE-521
5.9
2020-02-07 CVE-2019-18988 Weak Password Requirements vulnerability in Teamviewer
TeamViewer Desktop through 14.7.1965 allows a bypass of remote-login access control because the same key is used for different customers' installations.
local
high complexity
teamviewer CWE-521
7.0