İçeriğe atla
Noroxi

CWE-332 · 10 kayıt

Insufficient Entropy in PRNG

Bu sınıftaki CVE’ler

10 kayıt

  • CVE-2018-9057
    40Planlayın

    aws/resource_aws_iam_user_login_profile.go in the HashiCorp Terraform Amazon Web Services (AWS) provider through v1.12.0 has an inappropriat

    KritikCVSS 9,8İstismar yokEPSS %2

    hashicorp · terraform27 Mar 2018

  • CVE-2016-10743
    31İzleyin

    hostapd before 2.6 does not prevent use of the low-quality PRNG that is reached by an os_random() function call.

    YüksekCVSS 7,5İstismar yokEPSS %2

    w1.fi · hostapd23 Mar 2019

  • CVE-2019-1715
    31İzleyin

    Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Low-Entropy Keys Vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %2

    cisco · adaptive security appliance device manager3 May 2019

  • CVE-2016-9154
    30İzleyin

    Siemens Desigo PX Web modules PXA40-W0, PXA40-W1, PXA40-W2 for Desigo PX automation controllers PXC00-E.D, PXC50-E.D, PXC100-E.D, PXC200-E.D

    YüksekCVSS 7,5İstismar yokEPSS %1

    siemens · desigo web module pxa30-w0 firmware23 Ara 2016

  • CVE-2014-9690
    30İzleyin

    Huawei home gateways WS318 with software V100R001C01B022 and earlier versions are affected by the PIN offline brute force cracking vulnerabi

    YüksekCVSS 7,5İstismar yokEPSS %1

    huawei · ws318 firmware2 Nis 2017

  • CVE-2023-20107
    30İzleyin

    Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Low-Entropy Keys Vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %1

    cisco · adaptive security appliance23 Mar 2023

  • CVE-2017-18486
    29İzleyin

    Jitbit Helpdesk before 9.0.3 allows remote attackers to escalate privileges because of mishandling of the User/AutoLogin userHash parameter.

    YüksekCVSS 7,2Kavram kanıtıEPSS %5

    jitbit · helpdesk9 Ağu 2019

  • CVE-2026-3290
    29İzleyin

    Timing limitations of the HRNG in RS9116 when power save mode is enabled results in predictable values

    YüksekCVSS 7,4İstismar yokEPSS %0

    silicon labs · rs9116 sdk14 May 2026

  • CVE-2014-0016
    18İzleyin

    stunnel before 5.00, when using fork threading, does not properly update the state of the OpenSSL pseudo-random number generator (PRNG), whi

    OrtaCVSS 4,3İstismar yokEPSS %2

    stunnel · stunnel24 Mar 2014

  • CVE-2017-9371
    10İzleyin

    In BlackBerry QNX Software Development Platform (SDP) 6.6.0 and 6.5.0 SP1 and earlier, a loss of integrity vulnerability in the default conf

    DüşükCVSS 2,6İstismar yokEPSS %1

    blackberry · qnx software development platform14 Kas 2017

Tüm zafiyet sınıfları