Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CWE-310 (加密问题) — Vulnerability Class 53

53 vulnerabilities classified as CWE-310 (加密问题). AI Chinese analysis included.

This page aggregates security vulnerabilities associated with the cryptographic issues weakness type, classified under Common Weakness Enumeration identifier CWE-310. The collection compiles data from various vendors and products, covering the time range from January 1, 2020, to December 31, 2023. It is important to note that this dataset represents known issues where improper handling of cryptographic algorithms or keys led to potential security breaches. Users can utilize this resource to track vendor-specific advisories related to cryptographic failures, helping security teams monitor their ecosystem for relevant risks. The page also facilitates a deeper understanding of the CWE-310 weakness class by providing contextual information on how these flaws typically manifest in software systems. Additionally, stakeholders can look up a specific product's vulnerability history to assess long-term security hygiene and identify recurring patterns in cryptographic implementations. This structured overview aids in prioritizing remediation efforts by highlighting the prevalence and impact of these specific defects. By centralizing this information, the page serves as a reference for developers, auditors, and security analysts seeking to improve the robustness of cryptographic designs. The goal is to provide clear, factual data that supports informed decision-making regarding software supply chain security and vulnerability management practices without promoting any specific vendor or product.

CVE ID Title CVSS Severity Published
CVE-2026-17616 Security vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access — Security Verify Access 6.8 Medium 2026-08-12
CVE-2026-49000 Cryptography Implementation Flaw vulnerability in ZTE ZXUniPOS NDS-LTE product — ZXUniPOS NDS-LTE 7.0 High 2026-05-27
CVE-2025-21482 Cryptographic Issues in Core — Snapdragon 7.1 High 2025-09-24
CVE-2025-48823 Windows Cryptographic Services Information Disclosure Vulnerability — Windows 10 Version 1507 5.9 Medium 2025-07-08
CVE-2025-21422 Cryptographic Issues in Automotive — Snapdragon 7.1 High 2025-07-08
CVE-2024-38408 Cryptographic Issues in BT Controller — Snapdragon 8.2 High 2024-11-04
CVE-2024-26228 Windows Cryptographic Services Security Feature Bypass Vulnerability — Windows 10 Version 1809 7.8 High 2024-04-09
CVE-2024-20690 Windows Nearby Sharing Spoofing Vulnerability — Windows 10 Version 1809 6.5 Medium 2024-01-09
CVE-2023-33037 Cryptographic Issues in Automotive — Snapdragon 7.1 High 2024-01-02
CVE-2023-44303 Robware RVTools 安全漏洞 — RVTools 7.5 High 2023-11-24
CVE-2022-22076 Cryptographic issue in Core — Snapdragon 7.1 High 2023-06-06
CVE-2022-45453 Acronis Cyber Protect 加密问题漏洞 — Acronis Cyber Protect 15 7.5 - 2023-05-18
CVE-2023-23919 Node.js 安全漏洞 — Node 7.5 - 2023-02-23
CVE-2022-40675 Fortinet FortiNAC 加密问题漏洞 — FortiNAC 6.0 Medium 2023-02-16
CVE-2022-4610 Click Studios Passwordstate risky encryption — Passwordstate 1.9 Low 2022-12-19
CVE-2021-4258 whohas Package Information cleartext transmission — whohas 3.7 Low 2022-12-19
CVE-2022-32222 Node.js 代码问题漏洞 — Node 8.2 - 2022-07-14
CVE-2022-23719 PingID Windows Login prior to 2.8 does not authenticate communication with a local Java service used to capture security key requests — PingID Windows Login 7.2 High 2022-06-30
CVE-2021-41995 PingID Mac Login prior to 1.1 vulnerable to pre-computed dictionary attacks — PingID Mac Login 7.7 High 2022-06-30
CVE-2022-23724 PingID Integration for Windows Login MFA Bypass — PingID Integration for Windows Login 6.4 Medium 2022-05-04
CVE-2021-42001 PingID Desktop encryption libraries misconfiguration can lead to sensitive data exposure — PingID Desktop 8.0 High 2022-04-30
CVE-2021-41994 PingID iOS mobile application prior to 1.19 vulnerable to pre-computed dictionary attacks — PingID Mobile Application 6.6 Medium 2022-04-30
CVE-2021-41993 PingID Android mobile application prior to 1.19 vulnerable to pre-computed dictionary attacks — PingID Mobile Application 6.6 Medium 2022-04-30
CVE-2021-41992 PingID Windows Login RSA cryptographic weakness with possible offline MFA bypass — PingID Windows Login 7.7 High 2022-04-30
CVE-2021-22947 Migration Toolkit For Containers 数据伪造问题漏洞 — https://github.com/curl/curl 5.9 - 2021-09-29
CVE-2020-8897 Robustness weakness in AWS KMS and Encryption SDKs — AWS SDK 4.8 Medium 2020-11-16
CVE-2020-8150 Nextcloud 加密问题漏洞 — Nextcloud Server 4.4 - 2020-11-09
CVE-2020-8173 Nextcloud 加密问题漏洞 — Nextcloud Server 4.9 - 2020-10-30
CVE-2020-3389 Cisco Hyperflex HX-Series Software Weak Storage Vulnerability — Cisco HyperFlex HX Data Platform 6.0 - 2020-08-26
CVE-2019-3731 Dell RSA BSAFE Micro Edition Suite 信息泄露漏洞 — RSA BSAFE Crypto-C Micro Edition 6.5 - 2019-09-30

Vulnerabilities classified as CWE-310 (加密问题) represent 53 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.