Перейти к содержимому
Noroxi

CWE-329 · 11 записей

Generation of Predictable IV with CBC Mode

CVE этого класса

11 записей

  • CVE-2022-46397
    30Наблюдать

    FP.io VPP (Vector Packet Processor) 22.10, 22.06, 22.02, 21.10, 21.06, 21.01, 20.09, 20.05, 20.01, 19.08, and 19.04 Generates a Predictable

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    lfprojects · vector packet processor28 мар. 2023 г.

  • CVE-2025-59322
    30Наблюдать

    CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly handle decryption errors and allows encrypted volumes to be mounted

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    12 авг. 2026 г.

  • CVE-2020-5408
    26Наблюдать

    Dictionary attack with Spring Security queryable text encryptor

    СредняяCVSS 6,5Эксплойта нетEPSS 2 %

    pivotal software · spring security14 мая 2020 г.

  • CVE-2024-49783
    26Наблюдать

    IBM OpenPages with Watson information disclosure

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    ibm · openpages with watson8 июл. 2025 г.

  • CVE-2017-3226
    25Наблюдать

    Das U-Boot's AES-CBC encryption feature improperly handles an error condition and may allow attacks against the underlying cryptographic implementation and allo

    СредняяCVSS 6,4Эксплойта нетEPSS 0 %

    denx · u-boot24 июл. 2018 г.

  • CVE-2021-27499
    23Наблюдать

    Ypsomed mylife Cloud, mylife Mobile Application, Ypsomed mylife Cloud: All versions prior to 1.7.2, Ypsomed mylife App: All versions prior t

    СредняяCVSS 5,9Эксплойта нетEPSS 0 %

    ypsomed · mylife2 авг. 2021 г.

  • CVE-2024-56141
    20Наблюдать

    Minosoft has IV equal to key

    СредняяCVSS 5,0Эксплойта нетEPSS 0 %

    bixilon · minosoft6 июл. 2026 г.

  • CVE-2017-3225
    18Наблюдать

    Das U-Boot's AES-CBC encryption feature uses a zero (0) initialization vector that may allow attacks against the underlying cryptographic implementation and all

    СредняяCVSS 4,6Эксплойта нетEPSS 0 %

    denx · u-boot24 июл. 2018 г.

  • CVE-2026-14969
    17Наблюдать

    389-ds-base: 389-ds-base: static initialization vector in aes-cbc/3des-cbc attribute encryption

    СредняяCVSS 4,4Эксплойта нетEPSS 0 %

    redhat · directory server7 июл. 2026 г.

  • CVE-2025-2814
    16Наблюдать

    Crypt::CBC versions between 1.21 and 3.05 for Perl may use insecure rand() function for cryptographic functions

    СредняяCVSS 4,0Эксплойта нетEPSS 0 %

    lds · crypt::cbc12 апр. 2025 г.

  • CVE-2022-29054
    13Наблюдать

    A missing cryptographic steps vulnerability [CWE-325] in the functions that encrypt the DHCP and DNS keys in Fortinet FortiOS version 7.2.0,

    НизкаяCVSS 3,3Эксплойта нетEPSS 0 %

    fortinet · fortiproxy16 февр. 2023 г.

Все классы уязвимостей