Total
1269 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2020-24053 | 1 Moog | 4 Exvf5c-2, Exvf5c-2 Firmware, Exvp7c2-3 and 1 more | 2024-08-04 | 7.5 High |
Moog EXO Series EXVF5C-2 and EXVP7C2-3 units have a hardcoded credentials vulnerability. This could cause a confidentiality issue when using the FTP, Telnet, or SSH protocols. | ||||
CVE-2020-21995 | 1 Inim | 12 Smartliving 10100l, Smartliving 10100l Firmware, Smartliving 10100lg3 and 9 more | 2024-08-04 | 9.8 Critical |
Inim Electronics Smartliving SmartLAN/G/SI <=6.x uses default hardcoded credentials. An attacker could exploit this to gain Telnet, SSH and FTP access to the system. | ||||
CVE-2020-16258 | 1 Winstonprivacy | 2 Winston, Winston Firmware | 2024-08-04 | 7.1 High |
Winston 1.5.4 devices make use of a Monit service (not managed during the normal user process) which is configured with default credentials. | ||||
CVE-2020-16170 | 1 Robotemi | 1 Temi | 2024-08-04 | 7.5 High |
Use of Hard-coded Credentials in temi Robox OS prior to 120, temi Android app up to 1.3.7931 allows remote attackers to listen in on any ongoing calls between temi robots and their users if they can brute-force/guess a six-digit value via unspecified vectors. | ||||
CVE-2020-15833 | 1 Mofinetwork | 2 Mofi4500-4gxelte, Mofi4500-4gxelte Firmware | 2024-08-04 | 9.8 Critical |
An issue was discovered on Mofi Network MOFI4500-4GXeLTE 4.1.5-std devices. The Dropbear SSH daemon has been modified to accept an alternate hard-coded path to a public key that allows root access. This key is stored in a /rom location that cannot be modified by the device owner. | ||||
CVE-2020-15382 | 1 Broadcom | 1 Brocade Sannav | 2024-08-04 | 7.2 High |
Brocade SANnav before version 2.1.1 uses a hard-coded administrator account with the weak password ‘passw0rd’ if a password is not provided for PostgreSQL at install-time. | ||||
CVE-2020-15320 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 9.8 Critical |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the axiros password for the root account. | ||||
CVE-2020-15321 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 9.8 Critical |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the axzyxel password for the livedbuser account. | ||||
CVE-2020-15314 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 5.9 Medium |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded RSA SSH key for the root account. | ||||
CVE-2020-15318 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 5.9 Medium |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded DSA SSH key for the root account within the /opt/mysql chroot directory tree. | ||||
CVE-2020-15315 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 5.9 Medium |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded DSA SSH key for the root account within the /opt/axess chroot directory tree. | ||||
CVE-2020-15313 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 5.9 Medium |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded ECDSA SSH key for the root account. | ||||
CVE-2020-15323 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 9.8 Critical |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the cloud1234 password for the a1@chopin account default credentials. | ||||
CVE-2020-15312 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 5.9 Medium |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded DSA SSH key for the root account. | ||||
CVE-2020-15322 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 9.8 Critical |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the wbboEZ4BN3ssxAfM hardcoded password for the debian-sys-maint account. | ||||
CVE-2020-15317 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 5.9 Medium |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded RSA SSH key for the root account within the /opt/axess chroot directory tree. | ||||
CVE-2020-15319 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 5.9 Medium |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded RSA SSH key for the root account within the /opt/mysql chroot directory tree. | ||||
CVE-2020-15326 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 5.3 Medium |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded certificate for Ejabberd in ejabberd.pem. | ||||
CVE-2020-15327 | 1 Zyxel | 1 Cloudcnm Secumanager | 2024-08-04 | 7.5 High |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 uses ZODB storage without authentication. | ||||
CVE-2020-15324 | 1 Zyxel | 1 Cloud Cnm Secumanager | 2024-08-04 | 9.8 Critical |
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a world-readable axess/opt/axXMPPHandler/config/xmpp_config.py file that stores hardcoded credentials. |