Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-321 (使用硬编码的密码学密钥) — Vulnerability Class 243

243 vulnerabilities classified as CWE-321 (使用硬编码的密码学密钥). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-5722 Logsign Unified SecOps Platform HTTP API Hard-coded Cryptographic Key Remote Code Execution Vulnerability — Unified SecOps Platform 8.8 -2024-11-22
CVE-2024-45837 AIPHONE IX SYSTEM和AIPHONE IXG SYSTEM 安全漏洞 — IX-MV 8.8 -2024-11-22
CVE-2024-52614 EPARK Kura Sushi Official App 安全漏洞 — Kura Sushi Official App Produced by EPARK 7.8AIHighAI2024-11-20
CVE-2024-11308 TRCore DVC - Use of Hard-coded Cryptographic Key — DVC 6.2 Medium2024-11-18
CVE-2024-46889 Siemens SINEC INS 安全漏洞 — SINEC INS 5.3 Medium2024-11-12
CVE-2024-10920 mariazevedo88 travels-java-api JWT Secret JwtAuthenticationTokenFilter.java doFilterInternal hard-coded key — travels-java-api 3.1 Low2024-11-06
CVE-2024-38314 IBM Maximo Application Suite - Monitor Component information disclosure — Maximo Application Suite - Monitor Component 5.9 Medium2024-10-24
CVE-2024-20280 Cisco UCS Central Software Configuration Backup Static Key Vulnerability — Cisco Unified Computing System Central Software 6.3 Medium2024-10-16
CVE-2024-20350 Cisco Catalyst Center Static SSH Host Key Vulnerability — Cisco Digital Network Architecture Center (DNA Center) 7.5 High2024-09-25
CVE-2023-27584 Dragonfly2 vulnerable to hard coded cyptographic key — Dragonfly2 9.8 Critical2024-09-19
CVE-2024-42418 Avtec Outpost Use of Hard-coded Cryptographic Key — Outpost 0810 7.5 High2024-08-22
CVE-2024-6890 Journyx Unauthenticated Password Reset Bruteforce — Journyx (jtime) 8.1AIHighAI2024-08-07
CVE-2024-20323 Cisco Intelligent Node 安全漏洞 — Cisco Intelligent Node Manager 7.5 High2024-07-17
CVE-2024-38532 TEST_KEY used in example dcp_tool reference implementation — mxs-dcp 7.1 High2024-06-28
CVE-2024-5296 D-Link D-View Use of Hard-coded Cryptographic Key Authentication Bypass Vulnerability — D-View 9.8AICriticalAI2024-05-23
CVE-2024-31410 CyberPower PowerPanel business Use of Hard-coded Cryptographic Key — PowerPanel business 7.7 High2024-05-15
CVE-2024-30207 Siemens 多款产品 安全漏洞 — SIMATIC RTLS Locating Manager 10.0 Critical2024-05-14
CVE-2024-3109 Motorola GuideMe 安全漏洞 — Phones 6.3 Medium2024-05-03
CVE-2023-39482 Softing Secure Integration Server Hardcoded Cryptographic Key Information Disclosure Vulnerability — Secure Integration Server 6.5 -2024-05-03
CVE-2023-39465 Triangle MicroWorks SCADA Data Gateway Use of Hard-coded Cryptograhic Key Information Disclosure Vulnerability — SCADA Data Gateway 7.5 -2024-05-03
CVE-2023-32169 D-Link D-View Use of Hard-coded Cryptographic Key Authentication Bypass Vulnerability — D-View 9.8 -2024-05-03
CVE-2024-30407 [Child CVE] JCNR and cRPD: Hard-coded SSH host keys in cRPD may allow Person-in-the-Middle (PitM) attacks — cRPD 8.1 High2024-04-12
CVE-2023-38535 OpenText Exceed Turbo X 安全漏洞 — Exceed Turbo X 4.7 Medium2024-03-13
CVE-2024-2413 Intumit SmartRobot - Use of Hard-coded Cryptographic Key — SmartRobot 9.8 Critical2024-03-13
CVE-2024-1920 osuuu LightPicture TokenVerify.php handle hard-coded key — LightPicture 5.6 Medium2024-02-27
CVE-2024-1631 agent-js: Insecure Key Generation in `Ed25519KeyIdentity.generate` — agent-js 9.1 Critical2024-02-21
CVE-2024-1258 Juanpao JPShop API params.php hard-coded key — JPShop 3.1 Low2024-02-06
CVE-2023-6482 Encryption key derived from static host information — Synaptics Fingerprint Driver 5.2 Medium2024-01-27
CVE-2023-49256 Predictable encryption passphrase used in publicly accessible configuration file — H8951-4G-ESP 7.5 -2024-01-12
CVE-2023-48392 Kaifa Technology WebITR - Hard-coded Cryptographic Key — WebITR 9.8 Critical2023-12-15

Vulnerabilities classified as CWE-321 (使用硬编码的密码学密钥) represent 243 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.