Skip to content
Noroxi

CWE-334 · 12 records

Small Space of Random Values

CVEs in this class

12 records

  • MXsecurity Authentication Bypass

    CriticalCVSS 9.8No exploitEPSS 1%

    moxa · mxsecuritySep 2, 2023

  • CVE-2025-3895
    36Monitor

    Low token entropy in MegaBIP

    CriticalCVSS 9.1No exploitEPSS 0%

    jan syski · megabipMay 23, 2025

  • Communication Components in multiple CODESYS products vulnerable to communication channel disruption

    HighCVSS 7.5No exploitEPSS 1%

    codesys · control for beaglebone slApr 7, 2022

  • An authentication bypass vulnerability exists in the get_aes_key_info_by_packetid() function of the home_security binary of Anker Eufy Homeb

    HighCVSS 7.5No exploitEPSS 1%

    anker · eufy homebase 2 firmwareDec 9, 2021

  • Intentionally weakened effective strength in TETRA TEA1

    HighCVSS 7.5No exploitEPSS 1%

    midnightblue · tetra\Oct 19, 2023

  • CVE-2020-7566
    29Monitor

    A CWE-334: Small Space of Random Values vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to

    HighCVSS 7.3No exploitEPSS 0%

    schneider-electric · modicon m221 firmwareNov 19, 2020

  • A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V11.0), SIPROTEC 5 6MD85 (CP200) (All versions), SIPROTEC 5

    MediumCVSS 6.9No exploitEPSS 0%

    siemens · siprotec 5 6md84 (cp300)May 12, 2026

  • CVE-2023-6951
    26Monitor

    A Use of Weak Credentials vulnerability affecting the Wi-Fi network generated by a set of DJI drones could allow a remote attacker to derive

    MediumCVSS 6.6No exploitEPSS 0%

    dji · mavic 3 proApr 2, 2024

  • Sharks has a Bias of Polynomial Coefficients in Secret Sharing

    MediumCVSS 5.5No exploit

    crates.io · sharksNov 18, 2024

  • Improper identifier creation logic in Find My Mobile prior to version 7.2.24.12 allows attacker to identify the device.

    MediumCVSS 5.3No exploitEPSS 1%

    samsung · find my mobileJul 12, 2022

  • A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, re

    MediumCVSS 5.3No exploitEPSS 1%

    cisco · secure firewall management centerNov 15, 2022

  • Avahi: avahi wide-area dns predictable transaction ids

    MediumCVSS 5.3No exploitEPSS 1%

    red hat · red hat enterprise linux 9Nov 21, 2024

All vulnerability classes