Vulnerabilities > Weak Password Requirements
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-12-04 | CVE-2023-24049 | Weak Password Requirements vulnerability in Connectize Ac21000 G6 Firmware 641.139.1.1256 An issue was discovered on Connectize AC21000 G6 641.139.1.1256 allows attackers to gain escalated privileges on the device via poor credential management. | 9.8 |
2023-11-08 | CVE-2023-29974 | Weak Password Requirements vulnerability in Pfsense 2.6.0 An issue discovered in Pfsense CE version 2.6.0 allows attackers to compromise user accounts via weak password requirements. | 9.8 |
2023-11-03 | CVE-2023-41353 | Weak Password Requirements vulnerability in Nokia G-040W-Q Firmware G040Wqr201207 Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of weak password requirements. | 8.8 |
2023-10-19 | CVE-2023-37503 | Weak Password Requirements vulnerability in Hcltech HCL Compass HCL Compass is vulnerable to insecure password requirements. | 9.8 |
2023-09-14 | CVE-2023-37756 | Weak Password Requirements vulnerability in I-Doit I-doit pro 25 and below and I-doit open 25 and below employ weak password requirements for Administrator account creation. | 9.8 |
2023-08-24 | CVE-2023-40707 | Weak Password Requirements vulnerability in Opto22 Snap PAC S1 Firmware R10.3B There are no requirements for setting a complex password in the built-in web server of the SNAP PAC S1 Firmware version R10.3b, which could allow for a successful brute force attack if users don't set up complex credentials. | 7.5 |
2023-08-03 | CVE-2023-4125 | Weak Password Requirements vulnerability in Answer Weak Password Requirements in GitHub repository answerdev/answer prior to v1.1.0. | 8.8 |
2023-07-05 | CVE-2023-3089 | Weak Password Requirements vulnerability in Redhat products A compliance problem was found in the Red Hat OpenShift Container Platform. | 7.5 |
2023-06-02 | CVE-2023-2060 | Weak Password Requirements vulnerability in Mitsubishielectric products Weak Password Requirements vulnerability in FTP function on Mitsubishi Electric Corporation MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP allows a remote unauthenticated attacker to access to the module via FTP by dictionary attack or password sniffing. | 7.5 |
2023-05-22 | CVE-2023-31098 | Weak Password Requirements vulnerability in Apache Inlong Weak Password Requirements vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.1.0 through 1.6.0. When users change their password to a simple password (with any character or symbol), attackers can easily guess the user's password and access the account. Users are advised to upgrade to Apache InLong's 1.7.0 or cherry-pick https://github.com/apache/inlong/pull/7805 https://github.com/apache/inlong/pull/7805 to solve it. | 9.8 |