CWE-334 · 12 kayıt
Small Space of Random Values
Bu sınıftaki CVE’ler
12 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2023-39979İstismar yok | MXsecurity Authentication Bypassmoxa · mxsecurity · CWE-334 | Kritik9,8 | — | %1,0 | 2 Eyl 2023 |
36İzleyin | CVE-2025-3895İstismar yok | Low token entropy in MegaBIPjan syski · megabip · CWE-334 | Kritik9,1 | — | %0,5 | 23 May 2025 |
30İzleyin | CVE-2022-22517İstismar yok | Communication Components in multiple CODESYS products vulnerable to communication channel disruptioncodesys · control for beaglebone sl · CWE-334 | Yüksek7,5 | — | %1,3 | 7 Nis 2022 |
30İzleyin | CVE-2021-21955İstismar yok | An authentication bypass vulnerability exists in the get_aes_key_info_by_packetid() function of the home_security binary of Anker Eufy Homebanker · eufy homebase 2 firmware · CWE-334 | Yüksek7,5 | — | %1,0 | 9 Ara 2021 |
30İzleyin | CVE-2022-24402İstismar yok | Intentionally weakened effective strength in TETRA TEA1midnightblue · tetra\ · CWE-334 | Yüksek7,5 | — | %0,6 | 19 Eki 2023 |
29İzleyin | CVE-2020-7566İstismar yok | A CWE-334: Small Space of Random Values vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker toschneider-electric · modicon m221 firmware · CWE-334 | Yüksek7,3 | — | %0,3 | 19 Kas 2020 |
27İzleyin | CVE-2024-54017İstismar yok | A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V11.0), SIPROTEC 5 6MD85 (CP200) (All versions), SIPROTEC 5 siemens · siprotec 5 6md84 (cp300) · CWE-334 | Orta6,9 | — | %0,3 | 12 May 2026 |
26İzleyin | CVE-2023-6951İstismar yok | A Use of Weak Credentials vulnerability affecting the Wi-Fi network generated by a set of DJI drones could allow a remote attacker to derivedji · mavic 3 pro · CWE-334 | Orta6,6 | — | %0,3 | 2 Nis 2024 |
22İzleyin | GHSA-jp37-5qhw-mffwİstismar yok | Sharks has a Bias of Polynomial Coefficients in Secret Sharingcrates.io · sharks · CWE-334 | Orta5,5 | — | — | 18 Kas 2024 |
21İzleyin | CVE-2022-33707İstismar yok | Improper identifier creation logic in Find My Mobile prior to version 7.2.24.12 allows attacker to identify the device.samsung · find my mobile · CWE-334 | Orta5,3 | — | %0,8 | 12 Tem 2022 |
21İzleyin | CVE-2022-20941İstismar yok | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, recisco · secure firewall management center · CWE-334 | Orta5,3 | — | %0,7 | 15 Kas 2022 |
21İzleyin | CVE-2024-52616İstismar yok | Avahi: avahi wide-area dns predictable transaction idsred hat · red hat enterprise linux 9 · CWE-334 | Orta5,3 | — | %0,7 | 21 Kas 2024 |
- CVE-2023-3997939İzleyin
MXsecurity Authentication Bypass
KritikCVSS 9,8İstismar yokEPSS %1moxa · mxsecurity2 Eyl 2023
- CVE-2025-389536İzleyin
Low token entropy in MegaBIP
KritikCVSS 9,1İstismar yokEPSS %0jan syski · megabip23 May 2025
- CVE-2022-2251730İzleyin
Communication Components in multiple CODESYS products vulnerable to communication channel disruption
YüksekCVSS 7,5İstismar yokEPSS %1codesys · control for beaglebone sl7 Nis 2022
- CVE-2021-2195530İzleyin
An authentication bypass vulnerability exists in the get_aes_key_info_by_packetid() function of the home_security binary of Anker Eufy Homeb
YüksekCVSS 7,5İstismar yokEPSS %1anker · eufy homebase 2 firmware9 Ara 2021
- CVE-2022-2440230İzleyin
Intentionally weakened effective strength in TETRA TEA1
YüksekCVSS 7,5İstismar yokEPSS %1midnightblue · tetra\19 Eki 2023
- CVE-2020-756629İzleyin
A CWE-334: Small Space of Random Values vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to
YüksekCVSS 7,3İstismar yokEPSS %0schneider-electric · modicon m221 firmware19 Kas 2020
- CVE-2024-5401727İzleyin
A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V11.0), SIPROTEC 5 6MD85 (CP200) (All versions), SIPROTEC 5
OrtaCVSS 6,9İstismar yokEPSS %0siemens · siprotec 5 6md84 (cp300)12 May 2026
- CVE-2023-695126İzleyin
A Use of Weak Credentials vulnerability affecting the Wi-Fi network generated by a set of DJI drones could allow a remote attacker to derive
OrtaCVSS 6,6İstismar yokEPSS %0dji · mavic 3 pro2 Nis 2024
- GHSA-jp37-5qhw-mffw22İzleyin
Sharks has a Bias of Polynomial Coefficients in Secret Sharing
OrtaCVSS 5,5İstismar yokcrates.io · sharks18 Kas 2024
- CVE-2022-3370721İzleyin
Improper identifier creation logic in Find My Mobile prior to version 7.2.24.12 allows attacker to identify the device.
OrtaCVSS 5,3İstismar yokEPSS %1samsung · find my mobile12 Tem 2022
- CVE-2022-2094121İzleyin
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, re
OrtaCVSS 5,3İstismar yokEPSS %1cisco · secure firewall management center15 Kas 2022
- CVE-2024-5261621İzleyin
Avahi: avahi wide-area dns predictable transaction ids
OrtaCVSS 5,3İstismar yokEPSS %1red hat · red hat enterprise linux 921 Kas 2024