Vulnerabilities > Weak Password Requirements

DATE CVE VULNERABILITY TITLE RISK
2020-08-14 CVE-2015-8033 Weak Password Requirements vulnerability in Textpattern 4.5.7
In Textpattern 4.5.7, the password-reset feature does not securely tether a hash to a user account.
network
low complexity
textpattern CWE-521
5.3
2020-07-29 CVE-2020-4574 Weak Password Requirements vulnerability in IBM Security KEY Lifecycle Manager 3.0.1/4.0
IBM Tivoli Key Lifecycle Manager does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
7.5
2020-07-23 CVE-2020-7519 Weak Password Requirements vulnerability in Schneider-Electric Easergy Builder 1.4.7.2
A CWE-521: Weak Password Requirements vulnerability exists in Easergy Builder (Version 1.4.7.2 and older) which could allow an attacker to compromise a user account.
network
low complexity
schneider-electric CWE-521
7.5
2020-07-23 CVE-2020-11624 Weak Password Requirements vulnerability in Avertx Hd438 Firmware and Hd838 Firmware
An issue was discovered in AvertX Auto focus Night Vision HD Indoor/Outdoor IP Dome Camera HD838 and Night Vision HD Indoor/Outdoor Mini IP Bullet Camera HD438.
network
low complexity
avertx CWE-521
critical
9.8
2020-06-19 CVE-2016-11069 Weak Password Requirements vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 3.2.0.
network
low complexity
mattermost CWE-521
7.5
2020-06-16 CVE-2020-7492 Weak Password Requirements vulnerability in Schneider-Electric Gp-Pro EX Firmware 1.00/4.08.200/4.09.120
A CWE-521: Weak Password Requirements vulnerability exists in the GP-Pro EX V1.00 to V4.09.100 which could cause the discovery of the password when the user is entering the password because it is not masqueraded.
network
low complexity
schneider-electric CWE-521
6.5
2020-06-10 CVE-2019-4576 Weak Password Requirements vulnerability in IBM Qradar Network Packet Capture
IBM QRadar Network Packet Capture 7.3.0 - 7.3.3 Patch 1 and 7.4.0 GA does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
critical
9.8
2020-05-28 CVE-2020-4245 Weak Password Requirements vulnerability in IBM Security Identity Governance and Intelligence 5.2.6
IBM Security Identity Governance and Intelligence 5.2.6 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
network
low complexity
ibm CWE-521
7.5
2020-05-07 CVE-2019-18872 Weak Password Requirements vulnerability in Blaauwproducts Remote Kiln Control 3.0.0
Weak password requirements in Blaauw Remote Kiln Control through v3.00r4 allow a user to set short or guessable passwords (e.g., 1 or 1234).
network
low complexity
blaauwproducts CWE-521
7.5
2020-05-04 CVE-2020-8790 Weak Password Requirements vulnerability in Oklok Project Oklok 3.1.1
The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) has weak password requirements combined with improper restriction of excessive authentication attempts, which could allow a remote attacker to discover user credentials and obtain access via a brute force attack.
network
low complexity
oklok-project CWE-521
critical
9.8