Vulnerabilities > Weak Password Requirements
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-12-23 | CVE-2020-25153 | Weak Password Requirements vulnerability in Moxa Nport Iaw5000A-I/O Firmware The built-in web service for MOXA NPort IAW5000A-I/O firmware version 2.1 or lower does not require users to have strong passwords. | 7.5 |
2020-12-11 | CVE-2020-29591 | Weak Password Requirements vulnerability in Docker Registry Versions of the Official registry Docker images through 2.7.0 contain a blank password for the root user. | 9.8 |
2020-12-10 | CVE-2020-26201 | Weak Password Requirements vulnerability in Askey Ap5100W Firmware 1.01.097 Askey AP5100W_Dual_SIG_1.01.097 and all prior versions use a weak password at the Operating System (rlx-linux) level. | 9.8 |
2020-11-30 | CVE-2020-27587 | Weak Password Requirements vulnerability in Quickheal Total Security Quick Heal Total Security before 19.0 allows attackers with local admin rights to obtain access to files in the File Vault via a brute-force attack on the password. | 6.7 |
2020-11-30 | CVE-2020-27585 | Weak Password Requirements vulnerability in Quickheal Total Security Quick Heal Total Security before 19.0 allows attackers with local admin rights to modify sensitive anti virus settings via a brute-attack on the settings password. | 4.4 |
2020-10-27 | CVE-2020-8956 | Weak Password Requirements vulnerability in Pulsesecure Pulse Secure Desktop Pulse Secure Desktop Client 9.0Rx before 9.0R5 and 9.1Rx before 9.1R4 on Windows reveals users' passwords if Save Settings is enabled. | 3.3 |
2020-10-12 | CVE-2019-17444 | Weak Password Requirements vulnerability in Jfrog Artifactory Jfrog Artifactory uses default passwords (such as "password") for administrative accounts and does not require users to change them. | 9.8 |
2020-09-25 | CVE-2020-15369 | Weak Password Requirements vulnerability in Broadcom Fabric Operating System Supportlink CLI in Brocade Fabric OS Versions v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c does not obfuscate the password field, which could expose users’ credentials of the remote server. | 8.8 |
2020-09-25 | CVE-2020-26103 | Weak Password Requirements vulnerability in Cpanel In cPanel before 88.0.3, an insecure site password is used for Mailman on a templated VM (SEC-551). | 7.5 |
2020-08-26 | CVE-2019-4698 | Weak Password Requirements vulnerability in IBM products IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. | 7.5 |