Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-522 (不充分的凭证保护机制) — Vulnerability Class 367

367 vulnerabilities classified as CWE-522 (不充分的凭证保护机制). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-47161 JetBrains TeamCity 安全漏洞 — TeamCity 4.3 Medium2024-10-08
CVE-2024-40703 IBM Cognos Analytics information disclosure — Cognos Analytics 5.5 Medium2024-09-22
CVE-2024-47162 JetBrains YouTrack 安全漏洞 — YouTrack 4.1 Medium2024-09-19
CVE-2024-8986 Information Leakage in grafana-plugin-sdk-go — Grafana Plugin SDK 9.1AICriticalAI2024-09-19
CVE-2024-28981 Hitachi Vantara Pentaho Data Integration & Analytics - Insufficiently Protected Credentials — Pentaho Data Integration & Analytics 8.5 High2024-09-11
CVE-2024-39278 Hughes Network Systems Insufficiently Protected Credentials — WL3000 Fusion Software 4.2 Medium2024-09-05
CVE-2024-40704 IBM InfoSphere Information Server information disclosure — InfoSphere Information Server 4.9 Medium2024-08-15
CVE-2024-7813 SourceCodester Prison Management System Profile Image insufficiently protected credentials — Prison Management System 5.3 Medium2024-08-15
CVE-2024-39818 Zoom Workplace Apps and SDKs - Protection Mechanism Failure — Zoom Workplace Apps and SDKs 7.5 High2024-08-14
CVE-2024-7389 Forminator <= 1.29.1 - HubSpot Developer API Key Sensitive Information Exposure — Forminator Forms – Contact Form, Payment Form & Custom Form Builder 7.5 High2024-08-02
CVE-2023-41926 Insufficiently protected credentials in Kiloview P1/P2 devices — P1/P2 8.8 High2024-07-02
CVE-2024-39879 JetBrains TeamCity 安全漏洞 — TeamCity 5.0 Medium2024-07-01
CVE-2024-39878 JetBrains TeamCity 安全漏洞 — TeamCity 4.1 Medium2024-07-01
CVE-2024-38505 JetBrains YouTrack 安全漏洞 — YouTrack 5.3 Medium2024-06-18
CVE-2024-30119 HCL DRYiCE Optibot Reset Station is impacted by a missing Strict Transport Security Header — DRYiCE Optibot Reset Station 3.7 Low2024-06-14
CVE-2024-38285 Insufficiently Protected Credentials in Motorola Solutions Vigilant Fixed LPR Coms Box (BCAV1F2-C600) — Vigilant Fixed LPR Coms Box (BCAV1F2-C600) 6.5AIMediumAI2024-06-13
CVE-2024-38282 Insufficiently Protected Credentials in Motorola Solutions Vigilant Fixed LPR Coms Box (BCAV1F2-C600) — Vigilant Fixed LPR Coms Box (BCAV1F2-C600) 6.8AIMediumAI2024-06-13
CVE-2024-35208 Siemens SINEC Traffic Analyzer 安全漏洞 — SINEC Traffic Analyzer 6.3 Medium2024-06-11
CVE-2024-37051 JetBrains 多款集成开发环境安全漏洞 — IntelliJ IDEA 9.3 Critical2024-06-10
CVE-2024-36127 apko Exposure of HTTP basic auth credentials in log output — apko 7.5 High2024-06-03
CVE-2024-5176 Vulnerability in Welch Allyn Configuration Tool Software — Welch Allyn Configuration Tool 8.8 -2024-05-31
CVE-2024-35192 Trivy possibly leaks registry credential when scanning images from malicious registries — trivy 5.5 Medium2024-05-20
CVE-2024-23583 HCL BigFix Platform is susceptible to insufficiently protected credentials — BigFix Platform 6.7 Medium2024-05-17
CVE-2024-27109 Insufficiently protected credentials in GE HealthCare EchoPAC products — EchoPAC Software Only 7.6 High2024-05-14
CVE-2024-33497 Siemens 多款产品 安全漏洞 — SIMATIC RTLS Locating Manager 6.3 Medium2024-05-14
CVE-2024-33496 Siemens 多款产品 安全漏洞 — SIMATIC RTLS Locating Manager 6.3 Medium2024-05-14
CVE-2024-22345 IBM TXSeries for Multiplatforms information disclosure — TXSeries for Multiplatforms 6.2 Medium2024-05-10
CVE-2024-23551 HCL BigFix Compliance is potentially affected by Oracle database credentials stored at endpoint — BigFix Compliance 6.5 Medium2024-05-07
CVE-2023-37400 IBM Aspera Faspex privilege escalation — Aspera Faspex 7.8 High2024-04-19
CVE-2024-29992 Azure Identity Library for .NET Information Disclosure Vulnerability — Azure Identity Library for .NET 5.5 Medium2024-04-09

Vulnerabilities classified as CWE-522 (不充分的凭证保护机制) represent 367 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.