Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2024-08-13 CVE-2024-40697 Weak Password Requirements vulnerability in IBM Common Licensing 9.0
IBM Common Licensing 9.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
7.5
2024-08-13 CVE-2024-41683 Weak Password Requirements vulnerability in Siemens Location Intelligence
A vulnerability has been identified in Location Intelligence family (All versions < V4.4).
network
low complexity
siemens CWE-521
5.3
2024-06-28 CVE-2024-35137 Weak Password Requirements vulnerability in IBM Security Access Manager 10.0.0.0/10.0.7.1
IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to possibly elevate their privileges due to sensitive configuration information being exposed.
local
low complexity
ibm CWE-521
6.2
2024-02-03 CVE-2023-43016 Weak Password Requirements vulnerability in IBM products
IBM Security Access Manager Container (IBM Security Verify Access Appliance 10.0.0.0 through 10.0.6.1 and IBM Security Verify Access Docker 10.0.0.0 through 10.0.6.1) could allow a remote user to log into the server due to a user account with an empty password.
network
low complexity
ibm CWE-521
7.3
2024-01-09 CVE-2023-49238 Weak Password Requirements vulnerability in Gradle Enterprise
In Gradle Enterprise before 2023.1, a remote attacker may be able to gain access to a new installation (in certain installation scenarios) because of a non-unique initial system user password.
network
low complexity
gradle CWE-521
critical
9.8
2023-12-04 CVE-2023-24049 Weak Password Requirements vulnerability in Connectize Ac21000 G6 Firmware 641.139.1.1256
An issue was discovered on Connectize AC21000 G6 641.139.1.1256 allows attackers to gain escalated privileges on the device via poor credential management.
network
low complexity
connectize CWE-521
critical
9.8
2023-11-08 CVE-2023-29974 Weak Password Requirements vulnerability in Pfsense 2.6.0
An issue discovered in Pfsense CE version 2.6.0 allows attackers to compromise user accounts via weak password requirements.
network
low complexity
pfsense CWE-521
critical
9.8
2023-11-03 CVE-2023-41353 Weak Password Requirements vulnerability in Nokia G-040W-Q Firmware G040Wqr201207
Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of weak password requirements.
network
low complexity
nokia CWE-521
8.8
2023-10-19 CVE-2023-37503 Weak Password Requirements vulnerability in Hcltech HCL Compass
HCL Compass is vulnerable to insecure password requirements.
network
low complexity
hcltech CWE-521
critical
9.8
2023-09-14 CVE-2023-37756 Weak Password Requirements vulnerability in I-Doit
I-doit pro 25 and below and I-doit open 25 and below employ weak password requirements for Administrator account creation.
network
low complexity
i-doit CWE-521
critical
9.8