Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-310 (加密问题) — Vulnerability Class 51

51 vulnerabilities classified as CWE-310 (加密问题). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2019-9506 Blutooth BR/EDR specification does not specify sufficient encryption key length and allows an attacker to influence key length negotiation — BR/EDR 7.3 -2019-08-14
CVE-2019-1940 Cisco Industrial Network Director Web Services Management Agent Unauthorized Information Disclosure Vulnerability — Cisco Industrial Network Director 5.9 -2019-07-17
CVE-2019-6576 多款Siemens产品加密问题漏洞 — SIMATIC HMI Comfort Panels 4" - 22" 7.5 -2019-05-14
CVE-2019-1804 Cisco Nexus 9000 Series Fabric Switches Application Centric Infrastructure Mode Default SSH Key Vulnerability — Cisco NX-OS Software for Nexus 9000 Series Fabric Switches ACI Mode 11.0.1b 9.8 -2019-05-03
CVE-2018-0412 Cisco Small Business 100 Series Wireless Access Points和Small Business 300 Series Wireless Access Points 加密问题漏洞 — Small Business 100 Series Wireless Access Points 5.3 -2018-08-15
CVE-2017-13092 The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), including improperly specified HDL syntax allows use of an EDA tool as a decryption oracle — Standard 7.8 -2018-07-13
CVE-2017-13091 The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), including improperly specified padding in CBC mode allows use of an EDA tool as a decryption oracle — Standard 7.8 -2018-07-13
CVE-2017-13093 The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), including modification of encrypted IP cyphertext to insert hardware trojans — Standard 7.8 -2018-07-13
CVE-2017-13094 The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), including modification of the encryption key and insertion of hardware trojans in any IP — Standard 7.8 -2018-07-13
CVE-2017-13095 The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), including modification of a license-deny response to a license grant — Standard 7.8 -2018-07-13
CVE-2017-13096 The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), including modification of Rights Block to remove or relax access control — Standard 7.8 -2018-07-13
CVE-2017-13097 The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), including modification of Rights Block to remove or relax license requirement — Standard 7.8 -2018-07-13
CVE-2018-0281 Cisco Firepower System Software 加密问题漏洞 — Cisco Firepower System Software 5.8 -2018-05-02
CVE-2018-0283 Cisco Firepower System Software detection引擎加密问题漏洞 — Cisco Firepower System Software 5.8 -2018-05-02
CVE-2018-5458 Philips Intellispace Portal 加密问题漏洞 — Philips IntelliSpace Portal 5.9 -2018-03-26
CVE-2018-5462 Philips Intellispace Portal 加密问题漏洞 — Philips IntelliSpace Portal 7.5 -2018-03-26
CVE-2018-5464 Philips Intellispace Portal 加密问题漏洞 — Philips IntelliSpace Portal 7.5 -2018-03-26
CVE-2018-5466 Philips Intellispace Portal 加密问题漏洞 — Philips IntelliSpace Portal 7.5 -2018-03-26
CVE-2017-6766 Cisco Firepower System Software 安全漏洞 — Cisco Firepower System Software 7.5 -2017-08-07
CVE-2017-3204 Go SSH library 安全漏洞 — SSH library 8.1 -2017-04-04
CVE-2014-5413 Schneider Electric SCADA Expert ClearSCADA Cryptographic Issues — ClearSCADA 8.6 -2014-09-18

Vulnerabilities classified as CWE-310 (加密问题) represent 51 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.