Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-798 (使用硬编码的凭证) — Vulnerability Class 549

549 vulnerabilities classified as CWE-798 (使用硬编码的凭证). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-35452 Pan-Tilt-Zoom cameras default administrative credentials for web interface — PT12X-SE-xx-G3 9.8 Critical2025-09-05
CVE-2025-35451 Pan-Tilt-Zoom cameras hard-coded default passwords with SSH and telnet enabled — PT12X-SE-xx-G3 9.8 Critical2025-09-05
CVE-2025-55739 api: Shared OAuth Signing Key Between Different Instances — api 9.8AICriticalAI2025-09-04
CVE-2025-9696 Use of Hard-coded Credentials in SunPower PVS6 — PVS6 8.8AIHighAI2025-09-02
CVE-2025-9806 Tenda F1202 Administrative shadow hard-coded credentials — F1202 1.9 Low2025-09-02
CVE-2025-9778 Tenda W12 Administrative shadow hard-coded credentials — W12 1.9 Low2025-09-01
CVE-2025-9731 Tenda AC9 Administrative shadow hard-coded credentials — AC9 2.5 Low2025-08-31
CVE-2025-8857 Changing|Clinic Image System - Use of Hard-coded Credentials — Clinic Image System 9.8 Critical2025-08-29
CVE-2025-9380 FNKvision Y215 CCTV Camera Firmware passwd hard-coded credentials — Y215 CCTV Camera 7.8 High2025-08-24
CVE-2025-9310 yeqifu carRental Druid login.html hard-coded credentials — carRental 5.3 Medium2025-08-21
CVE-2025-9309 Tenda AC10 MD5 Hash shadow hard-coded credentials — AC10 2.5 Low2025-08-21
CVE-2025-33100 IBM Concert Software information disclosure — Concert Software 6.2 Medium2025-08-18
CVE-2025-7342 VM images built with Kubernetes Image Builder Nutanix or OVA providers use default credentials for Windows images if user did not override — Image Builder 7.5 High2025-08-17
CVE-2025-9091 Tenda AC20 shadow hard-coded credentials — AC20 2.5 Low2025-08-17
CVE-2025-8974 linlinjava litemall JSON Web Token JwtHelper.java hard-coded credentials — litemall 3.7 Low2025-08-14
CVE-2025-55279 Hard-coded Private Key Vulnerability in ZKTeco WL20 — WL20 Biometric Attendance System 5.7AIMediumAI2025-08-13
CVE-2025-54465 Hard-coded Credentials Vulnerability in ZKTeco WL20 — WL20 Biometric Attendance System 6.8AIMediumAI2025-08-13
CVE-2025-26398 SolarWinds Database Performance Analyzer Hard-coded Cryptographic Key Vulnerability — Database Performance Analyzer 5.6 Medium2025-08-12
CVE-2025-8730 Belkin F9K1009/F9K1010 Web Interface hard-coded credentials — F9K1009 9.8 Critical2025-08-08
CVE-2025-7768 Use of Hard-coded Credentials in Tigo Energy Cloud Connect Advanced — Cloud Connect Advanced 9.8AICriticalAI2025-08-06
CVE-2025-54872 onion-site-template tor Secrets Baked Into Image — onion-site-template 8.8AIHighAI2025-08-05
CVE-2025-37112 Hard-Coded Encryption Keys found in System — HPE Telco Network Function Virtual Orchestrator 6.0 Medium2025-07-31
CVE-2025-37111 Hard-Coded Authentication Keys found in System — HPE Telco Network Function Virtual Orchestrator 6.0 Medium2025-07-31
CVE-2014-125121 Array Networks vAPV and vxAG Default Credential Privilege Escalation — vAPV 8.8AIHighAI2025-07-31
CVE-2025-8231 D-Link DIR-890L UART Port rgbin hard-coded credentials — DIR-890L 6.8 Medium2025-07-27
CVE-2014-125115 Pandora FMS ≤ 5.0 SP2 Default Credential SQL Injection RCE — Pandora FMS 9.8 -2025-07-25
CVE-2025-31953 HCL iAutomate is affected by hardcoded credentials — iAutomate 7.1 High2025-07-24
CVE-2025-54455 SAMSUNG MagicINFO 9 Server 安全漏洞 — MagicINFO 9 Server 9.1 Critical2025-07-23
CVE-2025-54454 SAMSUNG MagicINFO 9 Server 安全漏洞 — MagicINFO 9 Server 9.1 Critical2025-07-23
CVE-2025-4130 Hardcoded Credentials in PAVO Inc.'s PAVO Pay — PAVO Pay 7.5 High2025-07-21

Vulnerabilities classified as CWE-798 (使用硬编码的凭证) represent 549 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.