V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
Filters

All vulnerabilities

1649 / 1649
ATT&CK: T1078.001×Clear all
9.8
CVE-2022-26138CVE KEV
The Atlassian Questions For Confluence app for Confluence Server and Data Center creates a Conf…
2022-01-01KEV
EPSS94.3%
pct 99
9.1
CVE-2024-28987CVE KEV
The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability…
2024-01-01KEV
EPSS94.3%
pct 99
9.8
CVE-2024-3272CVE KEV
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as very critical, has bee…
2024-01-01KEV
EPSS94.1%
pct 99
7.5
CVE-2019-16313CVE
ifw8 Router ROM v4.31 allows credential disclosure by reading the action/usermanager.htm HTML s…
2019-01-01Pre-auth
EPSS94.0%
pct 99
9.8
CVE-2019-17444CVE
Jfrog Artifactory uses default passwords (such as "password") for administrative accounts and d…
2019-01-01Pre-auth
EPSS92.5%
pct 99
9.8
CVE-2020-11854CVE
Arbitrary code execution vlnerability in Operation bridge Manager, Application Performance Mana…
2020-01-01Pre-auth
EPSS92.4%
pct 99
9.8
CVE-2024-3408CVE
man-group/dtale version 3.10.0 is vulnerable to an authentication bypass and remote code execut…
2024-01-01Pre-auth
EPSS91.7%
pct 99
9.8
CVE-2021-22707CVE
A CWE-798: Use of Hard-coded Credentials vulnerability exists in EVlink City (EVC1S22P4 / EVC1S…
2021-01-01Pre-auth
EPSS91.6%
pct 99
9.8
CVE-2023-22463CVE
KubePi is a k8s panel. The jwt authentication function of KubePi through version 1.6.2 uses har…
2023-01-01Pre-auth
EPSS91.5%
pct 99
9.8
CVE-2023-5074CVE
Use of a static key to protect a JWT token used in user authentication can allow an for an auth…
2023-01-01Pre-auth
EPSS91.5%
pct 99
9.8
CVE-2020-4429CVE
IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 contains a default password …
2020-01-01Pre-auth
EPSS90.7%
pct 99
9.8
CVE-2019-1935CVE
A vulnerability in Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director,…
2019-01-01Pre-auth
EPSS89.0%
pct 99
9.8
CVE-2020-26879CVE
Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. A…
2020-01-01Pre-auth
EPSS88.9%
pct 99
9.8
CVE-2020-8657CVE KEV
An issue was discovered in EyesOfNetwork 5.3. The installation uses the same API key (hardcoded…
2020-01-01KEV
EPSS88.9%
pct 99
9.8
CVE-2022-1162ANC
A hardcoded password was set for accounts registered using an OmniAuth provider (e.g. OAuth, LD…
2022-01-01Pre-auth
EPSS87.6%
pct 99
9.8
CVE-2024-20439CVE KEV
A vulnerability in Cisco Smart Licensing Utility (CSLU) could allow an unauthenticated, remote …
2024-01-01KEV
EPSS87.1%
pct 99
9.8
CVE-2024-22853CVE
D-LINK Go-RT-AC750 GORTAC750_A1_FW_v101b03 has a hardcoded password for the Alphanetworks accou…
2024-01-01Pre-auth
EPSS86.9%
pct 99
9.8
CVE-2022-35413CVE
WAPPLES through 6.0 has a hardcoded systemi account. A threat actor could use this account to a…
2022-01-01Pre-auth
EPSS86.0%
pct 99
9.8
CVE-2019-15975CVE
Multiple vulnerabilities in the authentication mechanisms of Cisco Data Center Network Manager …
2019-01-01Pre-auth
EPSS85.1%
pct 99
9.8
CVE-2020-35338CVE
The Web Administrative Interface in Mobile Viewpoint Wireless Multiplex Terminal (WMT) Playout …
2020-01-01Pre-auth
EPSS82.0%
pct 99
9.8
CVE-2016-1560CVE
ExaGrid appliances with firmware before 4.8 P26 have a default password of (1) inflection for t…
2016-01-01Pre-auth
EPSS81.7%
pct 99
8.2
CVE-2022-31269CVE
Nortek Linear eMerge E3-Series devices through 0.32-09c place admin credentials in /test.txt th…
2022-01-01Pre-auth
EPSS81.0%
pct 99
7.1
CVE-2025-14611CVE KEV
Gladinet CentreStack and Triofox prior to version 16.12.10420.56791 used hardcoded values for t…
2025-01-01KEV
EPSS80.9%
pct 99
9.8
CVE-2019-19492DEB
FreeSWITCH 1.6.10 through 1.10.1 has a default password in event_socket.conf.xml.
2019-01-01Pre-auth
EPSS78.2%
pct 99
9.8
CVE-2017-14143CVE
The getUserzoneCookie function in Kaltura before 13.2.0 uses a hardcoded cookie secret to valid…
2017-01-01Pre-auth
EPSS77.4%
pct 99
9.8
CVE-2020-13166CVE
The management tool in MyLittleAdmin 3.8 allows remote attackers to execute arbitrary code beca…
2020-01-01Pre-auth
EPSS77.4%
pct 99
9.8
CVE-2017-18371CVE
The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has three user ac…
2017-01-01Pre-auth
EPSS72.7%
pct 98
9.8
CVE-2023-28503CVE
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.…
2023-01-01Pre-auth
EPSS72.3%
pct 98
6.5
CVE-2019-6693CVE KEV
Use of a hard-coded cryptographic key to cipher sensitive data in FortiOS configuration backup …
2019-01-01KEV
EPSS72.2%
pct 98
9.8
CVE-2018-16158CVE
Eaton Power Xpert Meter 4000, 6000, and 8000 devices before 13.4.0.10 have a single SSH private…
2018-01-01Pre-auth
EPSS70.0%
pct 98
9.8
CVE-2014-9614CVE
The Web Panel in Netsweeper before 4.0.5 has a default password of branding for the branding ac…
2014-01-01Pre-auth
EPSS69.5%
pct 98
9.8
CVE-2023-45499CVE
VinChin Backup & Recovery v5.0.*, v6.0.*, v6.7.*, and v7.0.* was discovered to contain hardcode…
2023-01-01Pre-auth
EPSS69.5%
pct 98
5.3
CVE-2013-1603CVE
An Authentication vulnerability exists in D-LINK WCS-1100 1.02, TESCO DCS-2121 1.05_TESCO, TESC…
2013-01-01Pre-auth
EPSS64.3%
pct 98
9.8
CVE-2020-11857CVE
An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting versi…
2020-01-01Pre-auth
EPSS63.2%
pct 98
9.8
CVE-2018-11094CVE
An issue was discovered on Intelbras NCLOUD 300 1.0 devices. /cgi-bin/ExportSettings.sh, /gofor…
2018-01-01Pre-auth
EPSS56.3%
pct 98
9.8
CVE-2018-9161CVE
Prisma Industriale Checkweigher PrismaWEB 1.21 allows remote attackers to discover the hardcode…
2018-01-01Pre-auth
EPSS55.1%
pct 98
7.5
CVE-2013-2567CVE
An Authentication Bypass vulnerability exists in the web interface in Zavio IP Cameras through …
2013-01-01Pre-auth
EPSS54.7%
pct 98
7.5
CVE-2023-38433CVE
Fujitsu Real-time Video Transmission Gear "IP series" use hard-coded credentials, which may all…
2023-01-01Pre-auth
EPSS53.2%
pct 98
9.8
CVE-2024-42850CVE
An issue in the password change function of Silverpeas v6.4.2 and lower allows for the bypassin…
2024-01-01Pre-auth
EPSS49.8%
pct 97
9.8
CVE-2018-15439CVE
A vulnerability in the Cisco Small Business Switches software could allow an unauthenticated, r…
2018-01-01Pre-auth
EPSS49.6%
pct 97
Select a vulnerability on the left to open the preview.