Vulnerabilities > Weak Password Requirements
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-06-24 | CVE-2022-1668 | Weak Password Requirements vulnerability in Secheron Sepcos Control and Protection Relay Firmware 1.23.0/1.24.0/1.25.0 Weak default root user credentials allow remote attackers to easily obtain OS superuser privileges over the open TCP port for SSH. | 9.8 |
2022-06-16 | CVE-2022-30325 | Weak Password Requirements vulnerability in Trendnet Tew-831Dr Firmware 1.0601.130.1.1356 An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. | 8.8 |
2022-06-02 | CVE-2022-29729 | Weak Password Requirements vulnerability in Verizon 4G LTE Network Extender Firmware 0.4.038.2131/Ga4.38 Verizon 4G LTE Network Extender GA4.38 - V0.4.038.2131 utilizes a weak default admin password generation algorithm which generates passwords that are accessible to unauthenticated attackers via the webUI login page. | 7.5 |
2022-06-01 | CVE-2022-29098 | Weak Password Requirements vulnerability in Dell Powerscale Onefs Dell PowerScale OneFS versions 8.2.0.x through 9.3.0.x, contain a weak password requirement vulnerability. | 7.5 |
2022-05-20 | CVE-2022-1775 | Weak Password Requirements vulnerability in Trudesk Project Trudesk Weak Password Requirements in GitHub repository polonel/trudesk prior to 1.2.2. | 9.8 |
2022-04-27 | CVE-2022-29700 | Weak Password Requirements vulnerability in Zammad 5.1.0 A lack of password length restriction in Zammad v5.1.0 allows for the creation of extremely long passwords which can cause a Denial of Service (DoS) during password verification. | 7.5 |
2022-04-20 | CVE-2022-1039 | Weak Password Requirements vulnerability in Redlion Da50N Firmware The weak password on the web user interface can be exploited via HTTP or HTTPS. | 9.8 |
2022-02-18 | CVE-2021-38935 | Weak Password Requirements vulnerability in IBM Maximo Asset Management 7.6.1.2 IBM Maximo Asset Management 7.6.1.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. | 7.5 |
2022-01-05 | CVE-2022-22110 | Weak Password Requirements vulnerability in Daybydaycrm Daybyday CRM 2.2.0 In Daybyday CRM, versions 1.1 through 2.2.0 enforce weak password requirements in the user update functionality. | 7.5 |
2021-12-09 | CVE-2021-41696 | Weak Password Requirements vulnerability in Globaldatingsoftware Premiumdatingscript 4.2.7.7 An authentication bypass (account takeover) vulnerability exists in Premiumdatingscript 4.2.7.7 due to a weak password reset mechanism in requests\user.php. | 6.5 |