Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-798 (使用硬编码的凭证) — Vulnerability Class 549

549 vulnerabilities classified as CWE-798 (使用硬编码的凭证). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-27437 Advantech WISE-PaaS/RMM 信任管理问题漏洞 — WISE-PaaS/RMM 7.5 -2021-05-07
CVE-2021-30165 EDIMAX Technology Co., Ltd. HD Wireless Day & Night Network Camera IC-3140W - Hard-coded password — IC-3140W 7.5 High2021-04-27
CVE-2021-0248 NFX Series: Hard-coded credentials allow an attacker to take control of any instance through administrative interfaces. — Junos OS 10.0 Critical2021-04-22
CVE-2021-0245 Junos OS: Junos Fusion: Hard-coded credentials on satellite devices allows a locally authenticated attacker to elevate their privileges. — Junos OS 7.8 High2021-04-22
CVE-2020-27278 Hamilton-medical Hamilton-T1 信任管理问题漏洞 — Hamilton Medical AG, T1-Ventillator 6.8 -2021-03-15
CVE-2021-22667 Advantech BB-ESWGP506-2SFP-T 信任管理问题漏洞 — BB-ESWGP506-2SFP-T 9.8 -2021-02-24
CVE-2020-6779 Hard-coded Credentials in the Database of Bosch FSM-2500 Server and Bosch FSM-5000 Server — FSM-2500 10.0 Critical2021-01-25
CVE-2021-1219 Cisco Smart Software Manager Satellite Static Credential Vulnerability — Cisco Smart Software Manager On-Prem 7.8 -2021-01-20
CVE-2020-27256 多款Sooil产品信任管理问题漏洞 — SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A 6.1 -2021-01-19
CVE-2020-12501 Pepperl+Fuchs improper authorization affects multiple Comtrol RocketLinx products — P+F Comtrol RocketLinx 9.8 Critical2020-10-15
CVE-2020-3446 Cisco vWAAS for Cisco ENCS 5400-W Series and CSP 5000-W Series Default Credentials Vulnerability — Cisco Wide Area Application Services (WAAS) 9.8 -2020-08-26
CVE-2020-3382 Cisco Data Center Network Manager Authentication Bypass Vulnerability — Cisco Data Center Network Manager 9.8 -2020-07-31
CVE-2020-7515 Schneider Electric Easergy Builder 信任管理问题漏洞 — Easergy Builder V1.4.7.2 and prior 8.8 -2020-07-23
CVE-2020-3330 Cisco Small Business RV110W Wireless-N VPN Firewall Static Default Credential Vulnerability — Cisco RV110W Wireless-N VPN Firewall Firmware 9.8 -2020-07-16
CVE-2020-10269 RVD#2566: Hardcoded Credentials on MiRX00 wireless Access Point — MiR100 9.8 -2020-06-24
CVE-2020-10270 RVD#2557: Hardcoded Credentials on MiRX00 Control Dashboard — MiR100 9.8 -2020-06-24
CVE-2020-10276 RVD#2558: Default credentials on SICK PLC allows disabling safety features — MiR100 9.8 -2020-06-24
CVE-2020-7501 Schneider Electric Vijeo Designer和Vijeo Designer Basic 信任管理问题漏洞 — Vijeo Designer Basic (V1.1 HotFix 16 and prior) and Vijeo Designer (V6.2 SP9 and prior) 9.8 -2020-06-16
CVE-2020-7498 Schneider Electric Unity Loader和OS Loader Software 信任管理问题漏洞 — Unity Loader and OS Loader Software (All versions) 9.8 -2020-06-16
CVE-2020-6265 SAP Commerce 信任管理问题漏洞 — SAP Commerce 9.8 -2020-06-09
CVE-2020-3234 Cisco IOS Software for Cisco Industrial Routers Virtual Device Server Static Credentials Vulnerability — Cisco IOS 12.2(60)EZ16 8.8 -2020-06-03
CVE-2020-5248 Public GLPIKEY can be used to decrypt any data in GLPI — glpi 7.2 High2020-05-12
CVE-2020-3301 Cisco Firepower Management Center Static Credential Vulnerabilities — Cisco Firepower Management Center 7.8 -2020-05-06
CVE-2020-3318 Cisco Firepower Management Center Static Credential Vulnerabilities — Cisco Firepower Management Center 7.8 -2020-05-06
CVE-2019-5622 Accellion File Transfer Appliance Use of Hard-coded Credentials — File Transfer Appliance 9.8 -2020-04-29
CVE-2019-6859 多款Schneider Electric产品信任管理问题漏洞 — Modicon Controllers (All versions of the following CPUs and Communication Module product references listed in the Security Notifications) 7.5 -2020-04-22
CVE-2019-19108 B&R Automation Runtime SNMP Authentication and Authorization Weakness — Automation Runtime 9.4 Critical2020-04-20
CVE-2020-1614 NFX250 Series: Hardcoded credentials in the vSRX VNF instance. — Juniper Networks NFX Series Network Services Platform 10.0 Critical2020-04-08
CVE-2020-1615 Junos OS: vMX: Default credentials supplied in vMX configuration — Junos OS 9.8 Critical2020-04-08
CVE-2019-13559 GE Mark VIe Controller 信任管理问题漏洞 — GE Mark VIe Controller 7.8 -2020-04-07

Vulnerabilities classified as CWE-798 (使用硬编码的凭证) represent 549 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.