Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2022-02-18 CVE-2021-38935 Weak Password Requirements vulnerability in IBM Maximo Asset Management 7.6.1.2
IBM Maximo Asset Management 7.6.1.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
7.5
2022-01-05 CVE-2022-22110 Weak Password Requirements vulnerability in Daybydaycrm Daybyday CRM 2.2.0
In Daybyday CRM, versions 1.1 through 2.2.0 enforce weak password requirements in the user update functionality.
network
low complexity
daybydaycrm CWE-521
7.5
2021-12-09 CVE-2021-41696 Weak Password Requirements vulnerability in Globaldatingsoftware Premiumdatingscript 4.2.7.7
An authentication bypass (account takeover) vulnerability exists in Premiumdatingscript 4.2.7.7 due to a weak password reset mechanism in requests\user.php.
network
low complexity
globaldatingsoftware CWE-521
6.5
2021-12-06 CVE-2021-43471 Weak Password Requirements vulnerability in Canon Lbp223Dw Firmware
In Canon LBP223 printers, the System Manager Mode login does not require an account password or PIN.
network
low complexity
canon CWE-521
7.5
2021-12-06 CVE-2021-43036 Weak Password Requirements vulnerability in Kaseya Unitrends Backup
An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5.
network
low complexity
kaseya CWE-521
critical
9.8
2021-12-03 CVE-2021-20470 Weak Password Requirements vulnerability in multiple products
IBM Cognos Analytics 11.1.7 and 11.2.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm netapp CWE-521
7.5
2021-12-02 CVE-2021-40333 Weak Password Requirements vulnerability in Hitachienergy Fox615 Firmware and Xcm20 Firmware
Weak Password Requirements vulnerability in Hitachi Energy FOX61x, XCM20 allows an attacker to gain unauthorized access to the Data Communication Network (DCN) routing configuration.
network
low complexity
hitachienergy CWE-521
7.1
2021-11-10 CVE-2021-40520 Weak Password Requirements vulnerability in Airangel products
Airangel HSMX Gateway devices through 5.2.04 have Weak SSH Credentials.
network
low complexity
airangel CWE-521
critical
9.8
2021-10-19 CVE-2021-38462 Weak Password Requirements vulnerability in Inhandnetworks Ir615 Firmware 2.3.0.R4724/2.3.0.R4870
InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 does not enforce an efficient password policy.
network
low complexity
inhandnetworks CWE-521
critical
9.8
2021-10-13 CVE-2021-35498 Weak Password Requirements vulnerability in Tibco products
The TIBCO EBX Web Server component of TIBCO Software Inc.'s TIBCO EBX, TIBCO EBX, TIBCO EBX, and TIBCO Product and Service Catalog powered by TIBCO EBX contains a vulnerability that under certain specific conditions allows an attacker to enter a password other than the legitimate password and it will be accepted as valid.
network
low complexity
tibco CWE-521
critical
9.8