İçeriğe atla
Noroxi

CWE-258 · 12 kayıt

Empty Password in Configuration File

Bu sınıftaki CVE’ler

12 kayıt

  • CVE-2019-5021
    41Planlayın

    Versions of the Official Alpine Linux Docker images (since v3.3) contain a NULL password for the `root` user.

    KritikCVSS 9,8İstismar yokEPSS %6

    gliderlabs · docker-alpine8 May 2019

  • CVE-2018-17914
    40Planlayın

    InduSoft Web Studio versions prior to 8.1 SP2, and InTouch Edge HMI (formerly InTouch Machine Edition) versions prior to 2017 SP2.

    KritikCVSS 9,8İstismar yokEPSS %5

    aveva · indusoft web studio2 Kas 2018

  • CVE-2023-39439
    39İzleyin

    SAP Commerce accepts empty passphrases.

    KritikCVSS 9,8İstismar yokEPSS %1

    sap · commerce cloud7 Ağu 2023

  • CVE-2025-9276
    39İzleyin

    Cockroach Labs cockroach-k8s-request-cert Empty Root Password Authentication Bypass Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    cockroachlabs · cockroach-k8s-request-cert2 Eyl 2025

  • CVE-2024-28744
    35İzleyin

    The password is empty in the initial configuration of ACERA 9010-08 firmware v02.04 and earlier, and ACERA 9010-24 firmware v02.04 and earli

    YüksekCVSS 8,8İstismar yokEPSS %0

    furuno systems co.,ltd. · acera 9010-087 Nis 2024

  • CVE-2026-84398
    34İzleyin

    CareCam CM2507 Empty Password in Configuration File

    YüksekCVSS 8,7İstismar yokEPSS %0

    carecam · hmt.cm2507 firmware18 Eyl 2026

  • CVE-2020-29478
    30İzleyin

    CA Service Catalog 17.2 and 17.3 contain a vulnerability in the default configuration of the Setup Utility that may allow a remote attacker

    YüksekCVSS 7,5İstismar yokEPSS %1

    broadcom · ca service catalog5 Oca 2021

  • CVE-2023-43016
    29İzleyin

    IBM Security Access Manager Container unauthorized access

    YüksekCVSS 7,3İstismar yokEPSS %1

    ibm · security verify access2 Şub 2024

  • CVE-2025-15679
    29İzleyin

    BMC root account active without password on BullSequana XH3406 and XH3515

    YüksekCVSS 7,3İstismar yokEPSS %0

    bull · bullsequana xh340611 Eyl 2026

  • CVE-2025-4395
    27İzleyin

    Medtronic MyCareLink Patient Monitor Empty Password Vulnerability

    OrtaCVSS 6,8İstismar yokEPSS %0

    medtronic · mycarelink patient monitor 2495024 Tem 2025

  • CVE-2024-35137
    24İzleyin

    IBM Security Access Manager Docker information disclosure

    OrtaCVSS 6,2İstismar yokEPSS %0

    ibm · security access manager28 Haz 2024

  • CVE-2024-4106
    21İzleyin

    A vulnerability has been found in FAST/TOOLS and CI Server.

    OrtaCVSS 5,3İstismar yokEPSS %0

    yokogawa electric corporation · fast/tools26 Haz 2024

Tüm zafiyet sınıfları