Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2017-11-29 CVE-2017-14189 Weak Password Requirements vulnerability in Fortinet Fortiweb Manager 5.8.0
An improper access control vulnerability in Fortinet FortiWebManager 5.8.0 allows anyone that can access the admin webUI to successfully log-in regardless the provided password.
network
low complexity
fortinet CWE-521
critical
10.0
2017-11-13 CVE-2017-1221 Weak Password Requirements vulnerability in IBM Bigfix Platform 9.2/9.5
IBM Tivoli Endpoint Manager (IBM BigFix 9.2 and 9.5) does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
5.0
2017-10-23 CVE-2017-7150 Weak Password Requirements vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-521
2.1
2017-10-10 CVE-2017-12861 Weak Password Requirements vulnerability in Epson Easymp 2.86
The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4-digit code, displayed on-screen - ensuring only those who can view it are streaming.All Epson projectors supporting the "EasyMP" software are vulnerable to a brute-force vulnerability, allowing any attacker on the network to remotely control and stream to the vulnerable device
network
low complexity
epson CWE-521
7.5
2017-08-05 CVE-2017-9853 Weak Password Requirements vulnerability in SMA products
An issue was discovered in SMA Solar Technology products.
network
low complexity
sma CWE-521
critical
9.8
2017-07-31 CVE-2017-1386 Weak Password Requirements vulnerability in IBM API Connect and API Management
IBM API Connect 5.0.0.0 could allow a user to bypass policy restrictions and create non-compliant passwords which could be intercepted and decrypted using man in the middle techniques.
network
ibm CWE-521
4.3
2017-06-07 CVE-2017-1196 Weak Password Requirements vulnerability in IBM Bigfix Security Compliance Analytics 1.9.70
IBM BigFix Compliance (TEMA SUAv1 SCA SCM) 1.9.70 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
5.0
2017-04-05 CVE-2017-6339 Weak Password Requirements vulnerability in Trendmicro Interscan web Security Virtual Appliance
Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 6.5 before CP 1746 mismanages certain key and certificate data.
network
low complexity
trendmicro CWE-521
4.0
2017-04-04 CVE-2017-7306 Weak Password Requirements vulnerability in Riverbed Rios
Riverbed RiOS through 9.6.0 has a weak default password for the secure vault, which makes it easier for physically proximate attackers to defeat the secure-vault protection mechanism by leveraging knowledge of the password algorithm and the appliance serial number.
high complexity
riverbed CWE-521
6.4
2017-04-04 CVE-2017-7305 Weak Password Requirements vulnerability in Riverbed Rios
Riverbed RiOS through 9.6.0 does not require a bootloader password, which makes it easier for physically proximate attackers to defeat the secure-vault protection mechanism via a crafted boot.
low complexity
riverbed CWE-521
4.6