Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2022-08-04 CVE-2022-35143 Weak Password Requirements vulnerability in Raneto Project Raneto
Renato v0.17.0 employs weak password complexity requirements, allowing attackers to crack user passwords via brute-force attacks.
network
low complexity
raneto-project CWE-521
critical
9.8
2022-08-01 CVE-2022-36301 Weak Password Requirements vulnerability in Bosch Bf-Os
BF-OS version 3.x up to and including 3.83 do not enforce strong passwords which may allow a remote attacker to brute-force the device password.
network
low complexity
bosch CWE-521
7.5
2022-07-18 CVE-2022-26117 Weak Password Requirements vulnerability in Fortinet Fortinac
An empty password in configuration file vulnerability [CWE-258] in FortiNAC version 8.3.7 and below, 8.5.2 and below, 8.5.4, 8.6.0, 8.6.5 and below, 8.7.6 and below, 8.8.11 and below, 9.1.5 and below, 9.2.3 and below may allow an authenticated attacker to access the MySQL databases via the CLI.
network
low complexity
fortinet CWE-521
8.8
2022-07-17 CVE-2022-31211 Weak Password Requirements vulnerability in Infiray Iray-A8Z3 Firmware 1.0.957
An issue was discovered in Infiray IRAY-A8Z3 1.0.957.
network
low complexity
infiray CWE-521
critical
9.8
2022-07-14 CVE-2022-28377 Weak Password Requirements vulnerability in Verizon products
On Verizon 5G Home LVSKIHP InDoorUnit (IDU) 3.4.66.162 and OutDoorUnit (ODU) 3.33.101.0 devices, the CRTC and ODU RPC endpoints rely on a static account username/password for access control.
network
low complexity
verizon CWE-521
7.5
2022-06-24 CVE-2022-1668 Weak Password Requirements vulnerability in Secheron Sepcos Control and Protection Relay Firmware 1.23.0/1.24.0/1.25.0
Weak default root user credentials allow remote attackers to easily obtain OS superuser privileges over the open TCP port for SSH.
network
low complexity
secheron CWE-521
critical
9.8
2022-06-16 CVE-2022-30325 Weak Password Requirements vulnerability in Trendnet Tew-831Dr Firmware 1.0601.130.1.1356
An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices.
low complexity
trendnet CWE-521
8.8
2022-06-16 CVE-2022-2098 Weak Password Requirements vulnerability in Kromit Titra
Weak Password Requirements in GitHub repository kromitgmbh/titra prior to 0.78.1.
network
low complexity
kromit CWE-521
critical
9.8
2022-06-02 CVE-2022-29729 Weak Password Requirements vulnerability in Verizon 4G LTE Network Extender Firmware 0.4.038.2131/Ga4.38
Verizon 4G LTE Network Extender GA4.38 - V0.4.038.2131 utilizes a weak default admin password generation algorithm which generates passwords that are accessible to unauthenticated attackers via the webUI login page.
network
low complexity
verizon CWE-521
7.5
2022-06-01 CVE-2022-29098 Weak Password Requirements vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 8.2.0.x through 9.3.0.x, contain a weak password requirement vulnerability.
network
low complexity
dell CWE-521
7.5