Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2023-05-10 CVE-2023-25184 Weak Password Requirements vulnerability in Seiko-Sol products
Use of weak credentials exists in Seiko Solutions SkyBridge and SkySpider series, which may allow a remote unauthenticated attacker to decrypt password for the WebUI of the product.
network
low complexity
seiko-sol CWE-521
7.5
2023-03-21 CVE-2022-45635 Weak Password Requirements vulnerability in Megafeis Bofei Dbd+ 1.4.4
An issue discovered in MEGAFEIS, BOFEI DBD+ Application for IOS & Android v1.4.4 allows attacker to gain access to sensitive account information via insecure password policy.
network
low complexity
megafeis CWE-521
7.5
2023-03-04 CVE-2021-36689 Weak Password Requirements vulnerability in Samourai-Wallet-Android Project Samourai-Wallet-Android 0.99.96I
An issue discovered in com.samourai.wallet.PinEntryActivity.java in Streetside Samourai Wallet 0.99.96i allows attackers to view sensitive information and decrypt data via a brute force attack that uses a recovered samourai.dat file.
5.5
2023-02-12 CVE-2023-0793 Weak Password Requirements vulnerability in PHPmyfaq
Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
network
low complexity
phpmyfaq CWE-521
8.8
2023-01-02 CVE-2023-22451 Weak Password Requirements vulnerability in Kiwitcms Kiwi Tcms
Kiwi TCMS is an open source test management system.
network
low complexity
kiwitcms CWE-521
8.8
2022-12-15 CVE-2022-44236 Weak Password Requirements vulnerability in Zed-3 Voip Simplicity ASG 8.5.0.17807
Beijing Zed-3 Technologies Co.,Ltd VoIP simpliclty ASG 8.5.0.17807 (20181130-16:12) has a Weak password vulnerability.
network
low complexity
zed-3 CWE-521
critical
9.8
2022-12-06 CVE-2021-39434 Weak Password Requirements vulnerability in Zkteco Zktime 11.1.0
A default username and password for an administrator account was discovered in ZKTeco ZKTime 10.0 through 11.1.0, builds 20180901, 20190510.1, 20200309.3, 20200930, 20201231, and 20210220.
network
low complexity
zkteco CWE-521
7.5
2022-12-02 CVE-2022-45482 Weak Password Requirements vulnerability in Lazy Mouse Project Lazy Mouse
Lazy Mouse server enforces weak password requirements and doesn't implement rate limiting, allowing remote unauthenticated users to easily and quickly brute force the PIN and execute arbitrary commands.
network
low complexity
lazy-mouse-project CWE-521
critical
9.8
2022-12-01 CVE-2022-41969 Weak Password Requirements vulnerability in Nextcloud Server
Nextcloud Server is an open source personal cloud server.
network
low complexity
nextcloud CWE-521
2.7
2022-11-14 CVE-2022-43030 Weak Password Requirements vulnerability in Siyucms 6.1.7
Siyucms v6.1.7 was discovered to contain a remote code execution (RCE) vulnerability in the background.
network
low complexity
siyucms CWE-521
7.2