Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2019-06-07 CVE-2019-4067 Weak Password Requirements vulnerability in IBM products
IBM Intelligent Operations Center (IOC) 5.1.0 through 5.2.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
7.5
2019-04-24 CVE-2019-9950 Weak Password Requirements vulnerability in Westerndigital products
Western Digital My Cloud, My Cloud Mirror Gen2, My Cloud EX2 Ultra, My Cloud EX2100, My Cloud EX4100, My Cloud DL2100, My Cloud DL4100, My Cloud PR2100 and My Cloud PR4100 firmware before 2.31.174 is affected by an authentication bypass vulnerability.
network
low complexity
westerndigital CWE-521
critical
9.8
2019-04-02 CVE-2018-1680 Weak Password Requirements vulnerability in IBM Security Privileged Identity Manager 2.1.1
IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
7.5
2019-02-25 CVE-2019-9123 Weak Password Requirements vulnerability in Dlink Dir-825 Rev.B Firmware 2.10
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices.
network
low complexity
dlink CWE-521
critical
9.8
2019-02-09 CVE-2019-7676 Weak Password Requirements vulnerability in Enphase Envoy
A weak password vulnerability was discovered in Enphase Envoy R3.*.*.
network
low complexity
enphase CWE-521
7.2
2019-02-09 CVE-2019-7674 Weak Password Requirements vulnerability in Mobotix S14 Firmware Mxv4.2.1.61
An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices.
network
low complexity
mobotix CWE-521
critical
9.8
2019-01-14 CVE-2018-1956 Weak Password Requirements vulnerability in IBM Security Identity Manager
IBM Security Identity Manager 6.0.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
7.5
2018-12-17 CVE-2017-1597 Weak Password Requirements vulnerability in IBM Security Guardium
IBM Security Guardium 10.0, 10.0.1, 10.1, 10.1.2, 10.1.3, 10.1.4, and 10.5 Database Activity Monitor does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
7.5
2018-12-12 CVE-2018-15719 Weak Password Requirements vulnerability in Opendental
Open Dental before version 18.4 installs a mysql database and uses the default credentials of "root" with a blank password.
network
low complexity
opendental CWE-521
critical
9.8
2018-11-20 CVE-2018-18562 Weak Password Requirements vulnerability in Roche products
An issue was discovered in Roche Accu-Chek Inform II Base Unit / Base Unit Hub before 03.01.04 and CoaguChek / cobas h232 Handheld Base Unit before 03.01.04.
low complexity
roche CWE-521
8.8