CWE-257 · 67 kayıt
Storing Passwords in a Recoverable Format
Bu sınıftaki CVE’ler
67 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
62Bu hafta | CVE-2026-20128Silahlaştırılmış | Cisco Catalyst SD-WAN Manager Information Disclosure Vulnerabilitycisco · catalyst sd-wan manager · CWE-257 | Yüksek7,5 | KEV | %7,1 | 25 Şub 2026 |
39İzleyin | CVE-2022-32519İstismar yok | A CWE-257: Storing Passwords in a Recoverable Format vulnerability exists that could result in unwanted access to a DCE instance when perforschneider-electric · data center expert · CWE-257 | Kritik9,8 | — | %0,5 | 30 Oca 2023 |
39İzleyin | CVE-2023-0353İstismar yok | Akuvox E11 uses a weak encryption algorithm for stored passwords and uses a hard-coded password for decryption which could allow the encryptakuvox · e11 firmware · CWE-257 | Kritik9,8 | — | %0,4 | 13 Mar 2023 |
36İzleyin | CVE-2025-8904İstismar yok | Privilege escalation issue in Amazon EMR Secret Agent componentamazon · emr · CWE-257 | Kritik9,0 | — | %0,4 | 13 Ağu 2025 |
36İzleyin | CVE-2025-8095İstismar yok | Recoverable obfuscation using the OECH1 prefix encoding in OpenEdgeprogress software corporation · openedge · CWE-257 | Kritik9,1 | — | %0,2 | 14 Nis 2026 |
34İzleyin | CVE-2016-15058İstismar yok | Hirschmann HiLCOS Classic Platform Password Exposure via SNMPbelden · hirschmann hilcos classic platform · CWE-257 | Yüksek8,6 | — | %0,2 | 3 Nis 2026 |
33İzleyin | CVE-2025-6995İstismar yok | Improper Encryption in Ivanti Endpoint Managerivanti · endpoint manager · CWE-257 | Yüksek8,4 | — | %0,2 | 8 Tem 2025 |
33İzleyin | CVE-2025-6996İstismar yok | Improper Encryption in Ivanti Endpoint Managerivanti · endpoint manager · CWE-257 | Yüksek8,4 | — | %0,2 | 8 Tem 2025 |
33İzleyin | CVE-2025-34180İstismar yok | NetSupport Manager < 14.12.0001 Gateway Key Reversible Encoding Credential Recoverynetsupport software · manager · CWE-257 | Yüksek8,4 | — | %0,2 | 15 Ara 2025 |
33İzleyin | CVE-2022-34838İstismar yok | ABB Ability TM Operations Data Management Zenon Zenon Log Server file access controlabb · zenon · CWE-257 | Yüksek8,4 | — | %0,2 | 24 Ağu 2022 |
32İzleyin | CVE-2023-38738İstismar yok | IBM OpenPages with Watson information disclosureibm · openpages with watson · CWE-257 | Yüksek8,1 | — | %0,5 | 18 Oca 2024 |
32İzleyin | CVE-2026-30785İstismar yok | RustDesk Encrypts Local Passwords with World-Readable Machine ID and Fixed Zero Nonce (XSalsa20-Poly1305)rustdesk · rustdesk · CWE-257 | Yüksek8,2 | — | %0,1 | 5 Mar 2026 |
31İzleyin | CVE-2023-21726İstismar yok | Windows Credential Manager User Interface Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1607 · CWE-257 | Yüksek7,8 | — | %0,5 | 10 Oca 2023 |
31İzleyin | CVE-2017-9942İstismar yok | A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker with local access to thsiemens · sipass integrated · CWE-257 | Yüksek7,8 | — | %0,3 | 7 Ağu 2017 |
31İzleyin | CVE-2022-22251İstismar yok | cSRX Series: Storing Passwords in a Recoverable Format and software permissions issues allows a local attacker to elevate privilegesjuniper · junos · CWE-257 | Yüksek7,8 | — | %0,2 | 17 Eki 2022 |
30İzleyin | CVE-2021-27485İstismar yok | ZOLL Defibrillator Dashboard, v prior to 2.2,The application allows users to store their passwords in a recoverable format, which could allozoll · defibrillator dashboard · CWE-257 | Yüksek7,5 | — | %1,2 | 16 Haz 2021 |
30İzleyin | CVE-2021-35050İstismar yok | User Credentials Stored in a Recoverable Format within Fidelis Network and Deceptionfidelissecurity · deception · CWE-257 | Yüksek7,5 | — | %1,0 | 25 Haz 2021 |
30İzleyin | CVE-2024-1480İstismar yok | Unitronics Vision Standard Unauthenticated Password Retrievalunitronics · vision230 · CWE-257 | Yüksek7,5 | — | %0,5 | 19 Nis 2024 |
30İzleyin | CVE-2024-32042İstismar yok | CyberPower PowerPanel business Storing Passwords in a Recoverable Formatcyberpower · powerpanel · CWE-257 | Yüksek7,5 | — | %0,4 | 15 May 2024 |
30İzleyin | CVE-2025-44958İstismar yok | RUCKUS Network Director (RND) before 4.5 stores passwords in a recoverable format.commscope · ruckus network director · CWE-257 | Yüksek7,5 | — | %0,3 | 4 Ağu 2025 |
30İzleyin | CVE-2024-8774İstismar yok | Privilege Escalation in SIMPLE.ERPsimple sa · simple.erp · CWE-257 | Yüksek7,7 | — | %0,3 | 24 Mar 2025 |
30İzleyin | CVE-2023-5627İstismar yok | Incorrect Implementation of Authentication Algorithm Vulnerabilitymoxa · nport 6150-t firmware · CWE-257 | Yüksek7,5 | — | %0,3 | 1 Kas 2023 |
30İzleyin | CVE-2024-3543İstismar yok | LoadMaster Reversible Password Encryption Algorithmprogress · loadmaster · CWE-257 | Yüksek7,5 | — | %0,3 | 2 May 2024 |
30İzleyin | CVE-2026-65309İstismar yok | Storage of passwords in a reversible formatandritz · hipase-250 · CWE-257 | Yüksek7,5 | — | %0,2 | 31 Tem 2026 |
30İzleyin | CVE-2025-27459İstismar yok | The VNC application stores its passwords encrypted within the registry but uses DES for encryption.endress · meac300-fnade4 firmware · CWE-257 | Yüksek7,5 | — | %0,2 | 3 Tem 2025 |
- CVE-2026-2012862Bu hafta
Cisco Catalyst SD-WAN Manager Information Disclosure Vulnerability
YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %7cisco · catalyst sd-wan manager25 Şub 2026
- CVE-2022-3251939İzleyin
A CWE-257: Storing Passwords in a Recoverable Format vulnerability exists that could result in unwanted access to a DCE instance when perfor
KritikCVSS 9,8İstismar yokEPSS %0schneider-electric · data center expert30 Oca 2023
- CVE-2023-035339İzleyin
Akuvox E11 uses a weak encryption algorithm for stored passwords and uses a hard-coded password for decryption which could allow the encrypt
KritikCVSS 9,8İstismar yokEPSS %0akuvox · e11 firmware13 Mar 2023
- CVE-2025-890436İzleyin
Privilege escalation issue in Amazon EMR Secret Agent component
KritikCVSS 9,0İstismar yokEPSS %0amazon · emr13 Ağu 2025
- CVE-2025-809536İzleyin
Recoverable obfuscation using the OECH1 prefix encoding in OpenEdge
KritikCVSS 9,1İstismar yokEPSS %0progress software corporation · openedge14 Nis 2026
- CVE-2016-1505834İzleyin
Hirschmann HiLCOS Classic Platform Password Exposure via SNMP
YüksekCVSS 8,6İstismar yokEPSS %0belden · hirschmann hilcos classic platform3 Nis 2026
- CVE-2025-699533İzleyin
Improper Encryption in Ivanti Endpoint Manager
YüksekCVSS 8,4İstismar yokEPSS %0ivanti · endpoint manager8 Tem 2025
- CVE-2025-699633İzleyin
Improper Encryption in Ivanti Endpoint Manager
YüksekCVSS 8,4İstismar yokEPSS %0ivanti · endpoint manager8 Tem 2025
- CVE-2025-3418033İzleyin
NetSupport Manager < 14.12.0001 Gateway Key Reversible Encoding Credential Recovery
YüksekCVSS 8,4İstismar yokEPSS %0netsupport software · manager15 Ara 2025
- CVE-2022-3483833İzleyin
ABB Ability TM Operations Data Management Zenon Zenon Log Server file access control
YüksekCVSS 8,4İstismar yokEPSS %0abb · zenon24 Ağu 2022
- CVE-2023-3873832İzleyin
IBM OpenPages with Watson information disclosure
YüksekCVSS 8,1İstismar yokEPSS %1ibm · openpages with watson18 Oca 2024
- CVE-2026-3078532İzleyin
RustDesk Encrypts Local Passwords with World-Readable Machine ID and Fixed Zero Nonce (XSalsa20-Poly1305)
YüksekCVSS 8,2İstismar yokEPSS %0rustdesk · rustdesk5 Mar 2026
- CVE-2023-2172631İzleyin
Windows Credential Manager User Interface Elevation of Privilege Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0microsoft · windows 10 160710 Oca 2023
- CVE-2017-994231İzleyin
A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker with local access to th
YüksekCVSS 7,8İstismar yokEPSS %0siemens · sipass integrated7 Ağu 2017
- CVE-2022-2225131İzleyin
cSRX Series: Storing Passwords in a Recoverable Format and software permissions issues allows a local attacker to elevate privileges
YüksekCVSS 7,8İstismar yokEPSS %0juniper · junos17 Eki 2022
- CVE-2021-2748530İzleyin
ZOLL Defibrillator Dashboard, v prior to 2.2,The application allows users to store their passwords in a recoverable format, which could allo
YüksekCVSS 7,5İstismar yokEPSS %1zoll · defibrillator dashboard16 Haz 2021
- CVE-2021-3505030İzleyin
User Credentials Stored in a Recoverable Format within Fidelis Network and Deception
YüksekCVSS 7,5İstismar yokEPSS %1fidelissecurity · deception25 Haz 2021
- CVE-2024-148030İzleyin
Unitronics Vision Standard Unauthenticated Password Retrieval
YüksekCVSS 7,5İstismar yokEPSS %1unitronics · vision23019 Nis 2024
- CVE-2024-3204230İzleyin
CyberPower PowerPanel business Storing Passwords in a Recoverable Format
YüksekCVSS 7,5İstismar yokEPSS %0cyberpower · powerpanel15 May 2024
- CVE-2025-4495830İzleyin
RUCKUS Network Director (RND) before 4.5 stores passwords in a recoverable format.
YüksekCVSS 7,5İstismar yokEPSS %0commscope · ruckus network director4 Ağu 2025
- CVE-2024-877430İzleyin
Privilege Escalation in SIMPLE.ERP
YüksekCVSS 7,7İstismar yokEPSS %0simple sa · simple.erp24 Mar 2025
- CVE-2023-562730İzleyin
Incorrect Implementation of Authentication Algorithm Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %0moxa · nport 6150-t firmware1 Kas 2023
- CVE-2024-354330İzleyin
LoadMaster Reversible Password Encryption Algorithm
YüksekCVSS 7,5İstismar yokEPSS %0progress · loadmaster2 May 2024
- CVE-2026-6530930İzleyin
Storage of passwords in a reversible format
YüksekCVSS 7,5İstismar yokEPSS %0andritz · hipase-25031 Tem 2026
- CVE-2025-2745930İzleyin
The VNC application stores its passwords encrypted within the registry but uses DES for encryption.
YüksekCVSS 7,5İstismar yokEPSS %0endress · meac300-fnade4 firmware3 Tem 2025