CWE-321 · 319 kayıt
Use of Hard-coded Cryptographic Key
Bu sınıftaki CVE’ler
319 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
97Hemen | CVE-2025-30406Silahlaştırılmış | Gladinet CentreStack through 16.1.10296.56315 (fixed in 16.4.10315.56368) has a deserialization vulnerability due to the CentreStack portal'gladinet · centrestack · CWE-321 | Kritik9,8 | KEV | %94,3 | 3 Nis 2025 |
97Hemen | CVE-2016-4437Silahlaştırılmış | Apache Shiro before 1.2.5, when a cipher key has not been configured for the "remember me" feature, allows remote attackers to execute arbitapache · aurora · CWE-321 | Kritik9,8 | KEV | %93,0 | 7 Haz 2016 |
56Planlayın | CVE-2023-32169İstismar yok | D-Link D-View Use of Hard-coded Cryptographic Key Authentication Bypass Vulnerabilitydlink · d-view 8 · CWE-321 | Kritik9,8 | — | %56,1 | 2 May 2024 |
49Planlayın | CVE-2023-27584Kavram kanıtı | Dragonfly2 vulnerable to hard coded cyptographic keylinuxfoundation · dragonfly · CWE-321 | Kritik9,8 | — | %33,9 | 19 Eyl 2024 |
42Planlayın | CVE-2020-10884Silahlaştırılmış | This vulnerability allows network-adjacent attackers execute arbitrary code on affected installations of TP-Link Archer A7 Firmware Ver: 190tp-link · ac1750 firmware · CWE-321 | Yüksek8,8 | — | %21,9 | 25 Mar 2020 |
40Planlayın | CVE-2020-6990İstismar yok | Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versionsrockwellautomation · micrologix 1400 a firmware · CWE-321 | Kritik9,8 | — | %4,4 | 16 Mar 2020 |
40Planlayın | CVE-2021-40119İstismar yok | Cisco Policy Suite Static SSH Keys Vulnerabilitycisco · policy suite · CWE-321 | Kritik9,8 | — | %2,5 | 4 Kas 2021 |
40Planlayın | CVE-2025-57174Kavram kanıtı | An issue was discovered in Siklu Communications Etherhaul 8010TX and 1200FX devices, Firmware 7.4.0 through 10.7.3 and possibly other previoCWE-321 | Kritik9,8 | — | %2,2 | 15 Eyl 2025 |
40Planlayın | CVE-2017-14021İstismar yok | A Use of Hard-coded Cryptographic Key issue was discovered in Korenix JetNet JetNet5018G version 1.4, JetNet5310G version 1.4a, JetNet5428G-korenix · jetnet5018g firmware · CWE-321 | Kritik9,8 | — | %1,9 | 31 Eki 2017 |
40Planlayın | CVE-2022-0664İstismar yok | Use of Hard-coded Cryptographic Key in gravitl/netmakernetmaker · netmaker · CWE-321 | Kritik9,8 | — | %1,7 | 18 Şub 2022 |
40Planlayın | CVE-2022-24860İstismar yok | Databasir 1.01 has Use of Hard-coded Cryptographic Key vulnerability.databasir project · databasir · CWE-321 | Kritik9,8 | — | %1,7 | 19 Nis 2022 |
40Planlayın | CVE-2016-9335İstismar yok | A hard-coded cryptographic key vulnerability was identified in Red Lion Controls Sixnet-Managed Industrial Switches running firmware Versionredlion · sixnet-managed industrial switches firmware · CWE-321 | Kritik10,0 | — | %1,6 | 9 May 2018 |
40Planlayın | CVE-2026-86708İstismar yok | Sensitive data exposurezohocorp · manageengine applications manager · CWE-321 | Kritik10,0 | — | %1,2 | 6 gün önce |
40Planlayın | CVE-2024-30207İstismar yok | A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Managesiemens · simatic rtls locating manager · CWE-321 | Kritik10,0 | — | %0,8 | 14 May 2024 |
40Planlayın | CVE-2025-34217İstismar yok | Vasion Print (formerly PrinterLogic) Undocumented Hardcoded SSH Keyvasion · virtual appliance application · CWE-321 | Kritik10,0 | — | %0,7 | 30 Eyl 2025 |
40Planlayın | CVE-2025-34256İstismar yok | Advantech WISE-DeviceOn Server < 5.4 Hard-coded JWT Key Authentication Bypassadvantech · wise-deviceon server · CWE-321 | Kritik10,0 | — | %0,7 | 5 Ara 2025 |
40Planlayın | CVE-2025-12599İstismar yok | Multiple Devices are Sharing the Same Secrets for SDKSocket (TCP/5000)azure-access · blu-ic2 firmware · CWE-321 | Kritik10,0 | — | %0,4 | 1 Kas 2025 |
39İzleyin | CVE-2018-0040İstismar yok | Contrail Service Orchestration: hardcoded cryptographic certificates and keysjuniper · contrail service orchestration · CWE-321 | Kritik9,8 | — | %1,4 | 11 Tem 2018 |
39İzleyin | CVE-2022-22987İstismar yok | The affected product has a hardcoded private key available inside the project folder, which may allow an attacker to achieve Web Server logiadvantech · adam-3600 firmware · CWE-321 | Kritik9,8 | — | %1,2 | 4 Şub 2022 |
39İzleyin | CVE-2022-29186İstismar yok | Use of Hard-coded Cryptographic Key in rundeck/rundeck, rundeckpro/enterprisepagerduty · rundeck · CWE-321 | Kritik9,8 | — | %1,2 | 20 May 2022 |
39İzleyin | CVE-2019-19750İstismar yok | minerstat msOS before 2019-10-23 does not have a unique SSH key for each instance of the product.minerstat · msos · CWE-321 | Kritik9,8 | — | %1,1 | 12 Ara 2019 |
39İzleyin | CVE-2024-5296İstismar yok | D-Link D-View Use of Hard-coded Cryptographic Key Authentication Bypass Vulnerabilitydlink · d-view 8 · CWE-321 | Kritik9,8 | — | %1,1 | 23 May 2024 |
39İzleyin | CVE-2021-27389İstismar yok | A vulnerability has been identified in Opcenter Quality (All versions < V12.2), QMS Automotive (All versions < V12.30).siemens · opcenter quality · CWE-321 | Kritik9,8 | — | %1,0 | 22 Nis 2021 |
39İzleyin | CVE-2021-32520İstismar yok | QSAN Storage Manager - Use of Hard-coded Cryptographic Keyqsan · storage manager · CWE-321 | Kritik9,8 | — | %1,0 | 7 Tem 2021 |
39İzleyin | CVE-2023-37936İstismar yok | A use of hard-coded cryptographic key in Fortinet FortiSwitch version 7.4.0 and 7.2.0 through 7.2.5 and 7.0.0 through 7.0.7 and 6.4.0 througfortinet · fortiswitch · CWE-321 | Kritik9,8 | — | %1,0 | 14 Oca 2025 |
- CVE-2025-3040697Hemen
Gladinet CentreStack through 16.1.10296.56315 (fixed in 16.4.10315.56368) has a deserialization vulnerability due to the CentreStack portal'
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %94gladinet · centrestack3 Nis 2025
- CVE-2016-443797Hemen
Apache Shiro before 1.2.5, when a cipher key has not been configured for the "remember me" feature, allows remote attackers to execute arbit
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %93apache · aurora7 Haz 2016
- CVE-2023-3216956Planlayın
D-Link D-View Use of Hard-coded Cryptographic Key Authentication Bypass Vulnerability
KritikCVSS 9,8İstismar yokEPSS %56dlink · d-view 82 May 2024
- CVE-2023-2758449Planlayın
Dragonfly2 vulnerable to hard coded cyptographic key
KritikCVSS 9,8Kavram kanıtıEPSS %34linuxfoundation · dragonfly19 Eyl 2024
- CVE-2020-1088442Planlayın
This vulnerability allows network-adjacent attackers execute arbitrary code on affected installations of TP-Link Archer A7 Firmware Ver: 190
YüksekCVSS 8,8SilahlaştırılmışEPSS %22tp-link · ac1750 firmware25 Mar 2020
- CVE-2020-699040Planlayın
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions
KritikCVSS 9,8İstismar yokEPSS %4rockwellautomation · micrologix 1400 a firmware16 Mar 2020
- CVE-2021-4011940Planlayın
Cisco Policy Suite Static SSH Keys Vulnerability
KritikCVSS 9,8İstismar yokEPSS %2cisco · policy suite4 Kas 2021
- CVE-2025-5717440Planlayın
An issue was discovered in Siklu Communications Etherhaul 8010TX and 1200FX devices, Firmware 7.4.0 through 10.7.3 and possibly other previo
KritikCVSS 9,8Kavram kanıtıEPSS %215 Eyl 2025
- CVE-2017-1402140Planlayın
A Use of Hard-coded Cryptographic Key issue was discovered in Korenix JetNet JetNet5018G version 1.4, JetNet5310G version 1.4a, JetNet5428G-
KritikCVSS 9,8İstismar yokEPSS %2korenix · jetnet5018g firmware31 Eki 2017
- CVE-2022-066440Planlayın
Use of Hard-coded Cryptographic Key in gravitl/netmaker
KritikCVSS 9,8İstismar yokEPSS %2netmaker · netmaker18 Şub 2022
- CVE-2022-2486040Planlayın
Databasir 1.01 has Use of Hard-coded Cryptographic Key vulnerability.
KritikCVSS 9,8İstismar yokEPSS %2databasir project · databasir19 Nis 2022
- CVE-2016-933540Planlayın
A hard-coded cryptographic key vulnerability was identified in Red Lion Controls Sixnet-Managed Industrial Switches running firmware Version
KritikCVSS 10,0İstismar yokEPSS %2redlion · sixnet-managed industrial switches firmware9 May 2018
- CVE-2026-8670840Planlayın
Sensitive data exposure
KritikCVSS 10,0İstismar yokEPSS %1zohocorp · manageengine applications manager6 gün önce
- CVE-2024-3020740Planlayın
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manage
KritikCVSS 10,0İstismar yokEPSS %1siemens · simatic rtls locating manager14 May 2024
- CVE-2025-3421740Planlayın
Vasion Print (formerly PrinterLogic) Undocumented Hardcoded SSH Key
KritikCVSS 10,0İstismar yokEPSS %1vasion · virtual appliance application30 Eyl 2025
- CVE-2025-3425640Planlayın
Advantech WISE-DeviceOn Server < 5.4 Hard-coded JWT Key Authentication Bypass
KritikCVSS 10,0İstismar yokEPSS %1advantech · wise-deviceon server5 Ara 2025
- CVE-2025-1259940Planlayın
Multiple Devices are Sharing the Same Secrets for SDKSocket (TCP/5000)
KritikCVSS 10,0İstismar yokEPSS %0azure-access · blu-ic2 firmware1 Kas 2025
- CVE-2018-004039İzleyin
Contrail Service Orchestration: hardcoded cryptographic certificates and keys
KritikCVSS 9,8İstismar yokEPSS %1juniper · contrail service orchestration11 Tem 2018
- CVE-2022-2298739İzleyin
The affected product has a hardcoded private key available inside the project folder, which may allow an attacker to achieve Web Server logi
KritikCVSS 9,8İstismar yokEPSS %1advantech · adam-3600 firmware4 Şub 2022
- CVE-2022-2918639İzleyin
Use of Hard-coded Cryptographic Key in rundeck/rundeck, rundeckpro/enterprise
KritikCVSS 9,8İstismar yokEPSS %1pagerduty · rundeck20 May 2022
- CVE-2019-1975039İzleyin
minerstat msOS before 2019-10-23 does not have a unique SSH key for each instance of the product.
KritikCVSS 9,8İstismar yokEPSS %1minerstat · msos12 Ara 2019
- CVE-2024-529639İzleyin
D-Link D-View Use of Hard-coded Cryptographic Key Authentication Bypass Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1dlink · d-view 823 May 2024
- CVE-2021-2738939İzleyin
A vulnerability has been identified in Opcenter Quality (All versions < V12.2), QMS Automotive (All versions < V12.30).
KritikCVSS 9,8İstismar yokEPSS %1siemens · opcenter quality22 Nis 2021
- CVE-2021-3252039İzleyin
QSAN Storage Manager - Use of Hard-coded Cryptographic Key
KritikCVSS 9,8İstismar yokEPSS %1qsan · storage manager7 Tem 2021
- CVE-2023-3793639İzleyin
A use of hard-coded cryptographic key in Fortinet FortiSwitch version 7.4.0 and 7.2.0 through 7.2.5 and 7.0.0 through 7.0.7 and 6.4.0 throug
KritikCVSS 9,8İstismar yokEPSS %1fortinet · fortiswitch14 Oca 2025