Falhas do tipo CWE-798

822 resultados
CVE-2025-67304CRITICALIn Ruckus Network Director (RND) < 4.5.0.54, the OVA appliance contains hardcoded credentials for the ruckus PostgreSQL database user. In thEPSS 0.5%CVE-2025-46273CRITICALPlanet Technology Network Products Use of Hard-coded CredentialsEPSS 0.5%CVE-2026-22911MEDIUMFirmware update files may expose password hashes for system accounts, which could allow a remote attacker to recover credentials and gain unEPSS 0.5%CVE-2026-11414CRITICALUnauthenticated File Exfiltration in Altium Enterprise Server Vault Service via Hard-coded Cryptographic Key and Path TraversalEPSS 0.5%CVE-2025-48491LOWProject AI API Key Exposure in Source CodeEPSS 0.5%CVE-2026-28776HIGHHardcoded and Insecure Credentials for "monitor" account with SSH Access On IDC SFX2100 Satellite ReceiverEPSS 0.5%CVE-2024-53484HIGHEver Traduora 0.20.0 and below is vulnerable to Privilege Escalation due to the use of a hard-coded JWT signing key.EPSS 0.5%CVE-2024-50688CRITICALSunGrow iSolarCloud Android application V2.1.6.20241017 and prior contains hardcoded credentials. The application (regardless of the user acEPSS 0.5%CVE-2024-28990MEDIUMSolarWinds Access Rights Manager (ARM) Hardcoded Credentials Authentication Bypass VulnerabilityEPSS 0.5%CVE-2024-32053CRITICALCyberPower PowerPanel business Use of Hard-coded CredentialsEPSS 0.5%CVE-2026-42373CRITICALD-Link DIR-605L B2 Hardcoded Telnet Backdoor CredentialsEPSS 0.5%CVE-2026-42375CRITICALD-Link DIR-600L A1 Hardcoded Telnet Backdoor CredentialsEPSS 0.5%CVE-2024-53357HIGHMultiple SQL injection vulnerabilities in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote authenticated attackers, with low prEPSS 0.5%CVE-2026-42374CRITICALD-Link DIR-600L B1 Hardcoded Telnet Backdoor CredentialsEPSS 0.5%CVE-2025-65730HIGHAuthentication Bypass via Hardcoded Credentials GoAway up to v0.62.18, fixed in 0.62.19, uses a hardcoded secret for signing JWT tokens usedEPSS 0.5%CVE-2024-8448HIGHPLANET Technology switch devices - Remote privilege escalation using hard-coded credentialsEPSS 0.5%CVE-2023-3264MEDIUMThe Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier uses hard-coded credentials for all interactions with the internalEPSS 0.5%CVE-2025-46274CRITICALPlanet Technology Network Products Use of Hard-coded CredentialsEPSS 0.5%CVE-2023-2504HIGH Files present on firmware images could allow an attacker to gain unauthorized access as a root user using hard-coded credentials. EPSS 0.5%CVE-2026-42376CRITICALD-Link DIR-456U A1 Hardcoded Telnet Backdoor CredentialsEPSS 0.5%