Перейти к содержимому
Noroxi

CWE-258 · 12 записей

Empty Password in Configuration File

CVE этого класса

12 записей

  • CVE-2019-5021
    41В плане

    Versions of the Official Alpine Linux Docker images (since v3.3) contain a NULL password for the `root` user.

    КритическаяCVSS 9,8Эксплойта нетEPSS 6 %

    gliderlabs · docker-alpine8 мая 2019 г.

  • CVE-2018-17914
    40В плане

    InduSoft Web Studio versions prior to 8.1 SP2, and InTouch Edge HMI (formerly InTouch Machine Edition) versions prior to 2017 SP2.

    КритическаяCVSS 9,8Эксплойта нетEPSS 5 %

    aveva · indusoft web studio2 нояб. 2018 г.

  • CVE-2023-39439
    39Наблюдать

    SAP Commerce accepts empty passphrases.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    sap · commerce cloud7 авг. 2023 г.

  • CVE-2025-9276
    39Наблюдать

    Cockroach Labs cockroach-k8s-request-cert Empty Root Password Authentication Bypass Vulnerability

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    cockroachlabs · cockroach-k8s-request-cert2 сент. 2025 г.

  • CVE-2024-28744
    35Наблюдать

    The password is empty in the initial configuration of ACERA 9010-08 firmware v02.04 and earlier, and ACERA 9010-24 firmware v02.04 and earli

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    furuno systems co.,ltd. · acera 9010-087 апр. 2024 г.

  • CVE-2026-84398
    34Наблюдать

    CareCam CM2507 Empty Password in Configuration File

    ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %

    carecam · hmt.cm2507 firmware18 сент. 2026 г.

  • CVE-2020-29478
    30Наблюдать

    CA Service Catalog 17.2 and 17.3 contain a vulnerability in the default configuration of the Setup Utility that may allow a remote attacker

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    broadcom · ca service catalog5 янв. 2021 г.

  • CVE-2023-43016
    29Наблюдать

    IBM Security Access Manager Container unauthorized access

    ВысокаяCVSS 7,3Эксплойта нетEPSS 1 %

    ibm · security verify access2 февр. 2024 г.

  • CVE-2025-15679
    29Наблюдать

    BMC root account active without password on BullSequana XH3406 and XH3515

    ВысокаяCVSS 7,3Эксплойта нетEPSS 0 %

    bull · bullsequana xh340611 сент. 2026 г.

  • CVE-2025-4395
    27Наблюдать

    Medtronic MyCareLink Patient Monitor Empty Password Vulnerability

    СредняяCVSS 6,8Эксплойта нетEPSS 0 %

    medtronic · mycarelink patient monitor 2495024 июл. 2025 г.

  • CVE-2024-35137
    24Наблюдать

    IBM Security Access Manager Docker information disclosure

    СредняяCVSS 6,2Эксплойта нетEPSS 0 %

    ibm · security access manager28 июн. 2024 г.

  • CVE-2024-4106
    21Наблюдать

    A vulnerability has been found in FAST/TOOLS and CI Server.

    СредняяCVSS 5,3Эксплойта нетEPSS 0 %

    yokogawa electric corporation · fast/tools26 июн. 2024 г.

Все классы уязвимостей