Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2023-09-14 CVE-2023-37756 Weak Password Requirements vulnerability in I-Doit
I-doit pro 25 and below and I-doit open 25 and below employ weak password requirements for Administrator account creation.
network
low complexity
i-doit CWE-521
critical
9.8
2023-08-24 CVE-2023-40707 Weak Password Requirements vulnerability in Opto22 Snap PAC S1 Firmware R10.3B
There are no requirements for setting a complex password in the built-in web server of the SNAP PAC S1 Firmware version R10.3b, which could allow for a successful brute force attack if users don't set up complex credentials.
network
low complexity
opto22 CWE-521
7.5
2023-08-03 CVE-2023-4125 Weak Password Requirements vulnerability in Answer
Weak Password Requirements in GitHub repository answerdev/answer prior to v1.1.0.
network
low complexity
answer CWE-521
8.8
2023-07-07 CVE-2023-34995 Weak Password Requirements vulnerability in Piigab M-Bus 900S Firmware
There are no requirements for setting a complex password for PiiGAB M-Bus, which could contribute to a successful brute force attack if the password is inline with recommended password guidelines.
network
low complexity
piigab CWE-521
critical
9.8
2023-07-05 CVE-2023-3089 Weak Password Requirements vulnerability in Redhat products
A compliance problem was found in the Red Hat OpenShift Container Platform.
network
low complexity
redhat CWE-521
7.5
2023-06-27 CVE-2023-34240 Weak Password Requirements vulnerability in Fit2Cloud Cloudexplorer Lite
Cloudexplorer-lite is an open source cloud software stack.
network
low complexity
fit2cloud CWE-521
critical
9.8
2023-06-27 CVE-2023-3423 Weak Password Requirements vulnerability in Fit2Cloud Cloudexplorer Lite
Weak Password Requirements in GitHub repository cloudexplorer-dev/cloudexplorer-lite prior to v 1.2.0.
network
low complexity
fit2cloud CWE-521
8.8
2023-06-02 CVE-2023-2060 Weak Password Requirements vulnerability in Mitsubishielectric products
Weak Password Requirements vulnerability in FTP function on Mitsubishi Electric Corporation MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP allows a remote unauthenticated attacker to access to the module via FTP by dictionary attack or password sniffing.
network
low complexity
mitsubishielectric CWE-521
7.5
2023-05-22 CVE-2023-31098 Weak Password Requirements vulnerability in Apache Inlong
Weak Password Requirements vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.1.0 through 1.6.0.  When users change their password to a simple password (with any character or symbol), attackers can easily guess the user's password and access the account. Users are advised to upgrade to Apache InLong's 1.7.0 or cherry-pick https://github.com/apache/inlong/pull/7805 https://github.com/apache/inlong/pull/7805 to solve it.
network
low complexity
apache CWE-521
critical
9.8
2023-05-10 CVE-2023-25072 Weak Password Requirements vulnerability in Seiko-Sol products
Use of weak credentials exists in SkyBridge MB-A100/110 firmware Ver.
network
low complexity
seiko-sol CWE-521
7.5