Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2023-07-05 CVE-2023-3089 Weak Password Requirements vulnerability in Redhat products
A compliance problem was found in the Red Hat OpenShift Container Platform.
network
low complexity
redhat CWE-521
7.5
2023-06-02 CVE-2023-2060 Weak Password Requirements vulnerability in Mitsubishielectric products
Weak Password Requirements vulnerability in FTP function on Mitsubishi Electric Corporation MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP allows a remote unauthenticated attacker to access to the module via FTP by dictionary attack or password sniffing.
network
low complexity
mitsubishielectric CWE-521
7.5
2023-05-22 CVE-2023-31098 Weak Password Requirements vulnerability in Apache Inlong
Weak Password Requirements vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.1.0 through 1.6.0.  When users change their password to a simple password (with any character or symbol), attackers can easily guess the user's password and access the account. Users are advised to upgrade to Apache InLong's 1.7.0 or cherry-pick https://github.com/apache/inlong/pull/7805 https://github.com/apache/inlong/pull/7805 to solve it.
network
low complexity
apache CWE-521
critical
9.8
2023-05-10 CVE-2023-25072 Weak Password Requirements vulnerability in Seiko-Sol products
Use of weak credentials exists in SkyBridge MB-A100/110 firmware Ver.
network
low complexity
seiko-sol CWE-521
7.5
2023-05-10 CVE-2023-25184 Weak Password Requirements vulnerability in Seiko-Sol products
Use of weak credentials exists in Seiko Solutions SkyBridge and SkySpider series, which may allow a remote unauthenticated attacker to decrypt password for the WebUI of the product.
network
low complexity
seiko-sol CWE-521
7.5
2023-04-15 CVE-2023-2106 Weak Password Requirements vulnerability in Janeczku Calibre-Web
Weak Password Requirements in GitHub repository janeczku/calibre-web prior to 0.6.20.
network
low complexity
janeczku CWE-521
critical
9.8
2023-03-21 CVE-2022-45635 Weak Password Requirements vulnerability in Megafeis Bofei Dbd+ 1.4.4
An issue discovered in MEGAFEIS, BOFEI DBD+ Application for IOS & Android v1.4.4 allows attacker to gain access to sensitive account information via insecure password policy.
network
low complexity
megafeis CWE-521
7.5
2023-03-04 CVE-2021-36689 Weak Password Requirements vulnerability in Samourai-Wallet-Android Project Samourai-Wallet-Android 0.99.96I
An issue discovered in com.samourai.wallet.PinEntryActivity.java in Streetside Samourai Wallet 0.99.96i allows attackers to view sensitive information and decrypt data via a brute force attack that uses a recovered samourai.dat file.
5.5
2023-02-12 CVE-2023-0793 Weak Password Requirements vulnerability in PHPmyfaq
Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
network
low complexity
phpmyfaq CWE-521
8.8
2023-01-02 CVE-2023-22451 Weak Password Requirements vulnerability in Kiwitcms Kiwi Tcms
Kiwi TCMS is an open source test management system.
network
low complexity
kiwitcms CWE-521
8.8