Перейти к содержимому
Noroxi

CWE-332 · 10 записей

Insufficient Entropy in PRNG

CVE этого класса

10 записей

  • CVE-2018-9057
    40В плане

    aws/resource_aws_iam_user_login_profile.go in the HashiCorp Terraform Amazon Web Services (AWS) provider through v1.12.0 has an inappropriat

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    hashicorp · terraform27 мар. 2018 г.

  • CVE-2016-10743
    31Наблюдать

    hostapd before 2.6 does not prevent use of the low-quality PRNG that is reached by an os_random() function call.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    w1.fi · hostapd23 мар. 2019 г.

  • CVE-2019-1715
    31Наблюдать

    Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Low-Entropy Keys Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    cisco · adaptive security appliance device manager3 мая 2019 г.

  • CVE-2016-9154
    30Наблюдать

    Siemens Desigo PX Web modules PXA40-W0, PXA40-W1, PXA40-W2 for Desigo PX automation controllers PXC00-E.D, PXC50-E.D, PXC100-E.D, PXC200-E.D

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    siemens · desigo web module pxa30-w0 firmware23 дек. 2016 г.

  • CVE-2014-9690
    30Наблюдать

    Huawei home gateways WS318 with software V100R001C01B022 and earlier versions are affected by the PIN offline brute force cracking vulnerabi

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    huawei · ws318 firmware2 апр. 2017 г.

  • CVE-2023-20107
    30Наблюдать

    Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Low-Entropy Keys Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    cisco · adaptive security appliance23 мар. 2023 г.

  • CVE-2017-18486
    29Наблюдать

    Jitbit Helpdesk before 9.0.3 allows remote attackers to escalate privileges because of mishandling of the User/AutoLogin userHash parameter.

    ВысокаяCVSS 7,2Proof of conceptEPSS 5 %

    jitbit · helpdesk9 авг. 2019 г.

  • CVE-2026-3290
    29Наблюдать

    Timing limitations of the HRNG in RS9116 when power save mode is enabled results in predictable values

    ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %

    silicon labs · rs9116 sdk14 мая 2026 г.

  • CVE-2014-0016
    18Наблюдать

    stunnel before 5.00, when using fork threading, does not properly update the state of the OpenSSL pseudo-random number generator (PRNG), whi

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    stunnel · stunnel24 мар. 2014 г.

  • CVE-2017-9371
    10Наблюдать

    In BlackBerry QNX Software Development Platform (SDP) 6.6.0 and 6.5.0 SP1 and earlier, a loss of integrity vulnerability in the default conf

    НизкаяCVSS 2,6Эксплойта нетEPSS 1 %

    blackberry · qnx software development platform14 нояб. 2017 г.

Все классы уязвимостей