İçeriğe atla
Noroxi

CWE-334 · 12 kayıt

Small Space of Random Values

Bu sınıftaki CVE’ler

12 kayıt

  • CVE-2023-39979
    39İzleyin

    MXsecurity Authentication Bypass

    KritikCVSS 9,8İstismar yokEPSS %1

    moxa · mxsecurity2 Eyl 2023

  • CVE-2025-3895
    36İzleyin

    Low token entropy in MegaBIP

    KritikCVSS 9,1İstismar yokEPSS %0

    jan syski · megabip23 May 2025

  • CVE-2022-22517
    30İzleyin

    Communication Components in multiple CODESYS products vulnerable to communication channel disruption

    YüksekCVSS 7,5İstismar yokEPSS %1

    codesys · control for beaglebone sl7 Nis 2022

  • CVE-2021-21955
    30İzleyin

    An authentication bypass vulnerability exists in the get_aes_key_info_by_packetid() function of the home_security binary of Anker Eufy Homeb

    YüksekCVSS 7,5İstismar yokEPSS %1

    anker · eufy homebase 2 firmware9 Ara 2021

  • CVE-2022-24402
    30İzleyin

    Intentionally weakened effective strength in TETRA TEA1

    YüksekCVSS 7,5İstismar yokEPSS %1

    midnightblue · tetra\19 Eki 2023

  • CVE-2020-7566
    29İzleyin

    A CWE-334: Small Space of Random Values vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to

    YüksekCVSS 7,3İstismar yokEPSS %0

    schneider-electric · modicon m221 firmware19 Kas 2020

  • CVE-2024-54017
    27İzleyin

    A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V11.0), SIPROTEC 5 6MD85 (CP200) (All versions), SIPROTEC 5

    OrtaCVSS 6,9İstismar yokEPSS %0

    siemens · siprotec 5 6md84 (cp300)12 May 2026

  • CVE-2023-6951
    26İzleyin

    A Use of Weak Credentials vulnerability affecting the Wi-Fi network generated by a set of DJI drones could allow a remote attacker to derive

    OrtaCVSS 6,6İstismar yokEPSS %0

    dji · mavic 3 pro2 Nis 2024

  • Sharks has a Bias of Polynomial Coefficients in Secret Sharing

    OrtaCVSS 5,5İstismar yok

    crates.io · sharks18 Kas 2024

  • CVE-2022-33707
    21İzleyin

    Improper identifier creation logic in Find My Mobile prior to version 7.2.24.12 allows attacker to identify the device.

    OrtaCVSS 5,3İstismar yokEPSS %1

    samsung · find my mobile12 Tem 2022

  • CVE-2022-20941
    21İzleyin

    A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, re

    OrtaCVSS 5,3İstismar yokEPSS %1

    cisco · secure firewall management center15 Kas 2022

  • CVE-2024-52616
    21İzleyin

    Avahi: avahi wide-area dns predictable transaction ids

    OrtaCVSS 5,3İstismar yokEPSS %1

    red hat · red hat enterprise linux 921 Kas 2024

Tüm zafiyet sınıfları