İçeriğe atla
Noroxi

CWE-329 · 11 kayıt

Generation of Predictable IV with CBC Mode

Bu sınıftaki CVE’ler

11 kayıt

  • CVE-2022-46397
    30İzleyin

    FP.io VPP (Vector Packet Processor) 22.10, 22.06, 22.02, 21.10, 21.06, 21.01, 20.09, 20.05, 20.01, 19.08, and 19.04 Generates a Predictable

    YüksekCVSS 7,5İstismar yokEPSS %1

    lfprojects · vector packet processor28 Mar 2023

  • CVE-2025-59322
    30İzleyin

    CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly handle decryption errors and allows encrypted volumes to be mounted

    YüksekCVSS 7,5İstismar yokEPSS %0

    12 Ağu 2026

  • CVE-2020-5408
    26İzleyin

    Dictionary attack with Spring Security queryable text encryptor

    OrtaCVSS 6,5İstismar yokEPSS %2

    pivotal software · spring security14 May 2020

  • CVE-2024-49783
    26İzleyin

    IBM OpenPages with Watson information disclosure

    OrtaCVSS 6,5İstismar yokEPSS %0

    ibm · openpages with watson8 Tem 2025

  • CVE-2017-3226
    25İzleyin

    Das U-Boot's AES-CBC encryption feature improperly handles an error condition and may allow attacks against the underlying cryptographic implementation and allo

    OrtaCVSS 6,4İstismar yokEPSS %0

    denx · u-boot24 Tem 2018

  • CVE-2021-27499
    23İzleyin

    Ypsomed mylife Cloud, mylife Mobile Application, Ypsomed mylife Cloud: All versions prior to 1.7.2, Ypsomed mylife App: All versions prior t

    OrtaCVSS 5,9İstismar yokEPSS %0

    ypsomed · mylife2 Ağu 2021

  • CVE-2024-56141
    20İzleyin

    Minosoft has IV equal to key

    OrtaCVSS 5,0İstismar yokEPSS %0

    bixilon · minosoft6 Tem 2026

  • CVE-2017-3225
    18İzleyin

    Das U-Boot's AES-CBC encryption feature uses a zero (0) initialization vector that may allow attacks against the underlying cryptographic implementation and all

    OrtaCVSS 4,6İstismar yokEPSS %0

    denx · u-boot24 Tem 2018

  • CVE-2026-14969
    17İzleyin

    389-ds-base: 389-ds-base: static initialization vector in aes-cbc/3des-cbc attribute encryption

    OrtaCVSS 4,4İstismar yokEPSS %0

    redhat · directory server7 Tem 2026

  • CVE-2025-2814
    16İzleyin

    Crypt::CBC versions between 1.21 and 3.05 for Perl may use insecure rand() function for cryptographic functions

    OrtaCVSS 4,0İstismar yokEPSS %0

    lds · crypt::cbc12 Nis 2025

  • CVE-2022-29054
    13İzleyin

    A missing cryptographic steps vulnerability [CWE-325] in the functions that encrypt the DHCP and DNS keys in Fortinet FortiOS version 7.2.0,

    DüşükCVSS 3,3İstismar yokEPSS %0

    fortinet · fortiproxy16 Şub 2023

Tüm zafiyet sınıfları