CWE-255
226 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-255page 3 of 5
- CVE-2016-3685MEDIUMCVSS 4.7EG 4.72016-12-14
SAP Download Manager 2.1.142 and earlier generates an encryption key from a small key space on Windows and Mac systems, which allows context-dependent attackers to obtain sensitive configuration information by leveraging knowledge of a har…
- CVE-2016-3704HIGHCVSS 7.5EG 7.52017-06-13
Pulp before 2.8.5 uses bash's $RANDOM in an unsafe way to generate passwords.
- CVE-2016-3749HIGHCVSS 8.4EG 8.42016-07-11
server/LockSettingsService.java in LockSettingsService in Android 6.x before 2016-07-01 allows attackers to modify the screen-lock password or pattern via a crafted application, aka internal bug 28163930.
- CVE-2016-3946HIGHCVSS 7.8EG 7.82016-10-13
SAP Console (aka SAPConsole) 7.30 allows local users to discover SAP Server login credentials by reading the Windows registry, aka SAP Security Note 2121461.
- CVE-2016-3952HIGHCVSS 7.8EG 7.82018-02-06
web2py before 2.14.1, when using the standalone version, allows remote attackers to obtain environment variable values via a direct request to examples/template_examples/beautify. NOTE: this issue can be leveraged by remote attackers to g…
- CVE-2016-4028HIGHCVSS 7.5EG 7.52016-12-15
An issue was discovered in Open-Xchange OX Guard before 2.4.0-rev8. OX Guard uses an authentication token to identify and transfer guest users' credentials. The OX Guard API acts as a padding oracle by responding with different error code…
- CVE-2016-4325CRITICALCVSS 9.8EG 9.82016-05-14
Lantronix xPrintServer devices with firmware before 5.0.1-65 have hardcoded credentials, which allows remote attackers to obtain root access via unspecified vectors.
- CVE-2016-4527LOWCVSS 3.3EG 3.32016-06-10
ABB PCM600 before 2.7 improperly stores PCM600 authentication credentials, which allows local users to obtain sensitive information via unspecified vectors.
- CVE-2016-4670LOWCVSS 3.3EG 3.32017-02-20
An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. The issue involves the "Security" component. It allows local users to discover lengths of arbitrary passwords by reading a lo…
- CVE-2016-4996HIGHCVSS 7.0EG 7.02017-07-17
discovery-debug in Foreman before 6.2 when the ssh service has been enabled on discovered nodes displays the root password in plaintext in the system journal when used to log in, which allows local users with access to the system journal t…
- CVE-2016-5066CRITICALCVSS 9.8EG 9.82017-04-10
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 have weak passwords for admin, rauser, sconsole, and user.
- CVE-2016-5070CRITICALCVSS 9.8EG 9.82017-04-10
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 store passwords in cleartext.
- CVE-2016-5411CRITICALCVSS 9.8EG 9.82017-06-13
/var/lib/ovirt-engine/setup/engine-DC-config.py in Red Hat QuickStart Cloud Installer (QCI) before 1.0 GA is created world readable and contains the root password of the deployed system.
- CVE-2016-5670CRITICALCVSS 9.8EG 9.82016-08-03
Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 have a hardcoded password of admin for the admin account, which makes it easier for remote attackers to obtain access via the web management interface.
- CVE-2016-5838HIGHCVSS 7.5EG 7.52016-06-29
WordPress before 4.5.3 allows remote attackers to bypass intended password-change restrictions by leveraging knowledge of a cookie.
- CVE-2016-5848MEDIUMCVSS 6.7EG 6.72016-07-04
Siemens SICAM PAS before 8.07 does not properly restrict password data in the database, which makes it easier for local users to calculate passwords by leveraging unspecified database privileges.
- CVE-2016-5890MEDIUMCVSS 5.3EG 5.32016-11-30
IBM Sterling B2B Integrator 5.2 before 5020500_14 and 5.2 06 before 5020602_1 allows remote authenticated users to change arbitrary passwords via unspecified vectors.
- CVE-2016-5950MEDIUMCVSS 6.5EG 6.52017-02-01
IBM Kenexa LCMS Premier on Cloud stores user credentials in plain in clear text which can be read by an authenticated user.
- CVE-2016-6093CRITICALCVSS 9.8EG 9.82017-06-08
IBM Tivoli Key Lifecycle Manager does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
- CVE-2016-6110MEDIUMCVSS 6.5EG 6.52017-02-01
IBM Tivoli Storage Manager discloses unencrypted login credentials to Vmware vCenter that could be obtained by a local user.
- CVE-2016-6531CRITICALCVSS 9.8EG 9.82016-09-24
Open Dental 16.1 and earlier has a hardcoded MySQL root password, which allows remote attackers to obtain administrative access by leveraging access to intranet TCP port 3306. NOTE: the vendor disputes this issue, stating that the "vulner…
- CVE-2016-6538HIGHCVSS 8.8EG 8.82018-07-06
The TrackR Bravo mobile app stores the account password used to authenticate to the cloud API in cleartext in the cache.db file. Updated apps, version 5.1.6 for iOS and 2.2.5 for Android, have been released by the vendor to address the vul…
- CVE-2016-6546HIGHCVSS 7.8EG 7.82018-07-13
The iTrack Easy mobile application stores the account password used to authenticate to the cloud API in base64-encoding in the cache.db file. The base64 encoding format is considered equivalent to cleartext.
- CVE-2016-6547HIGHCVSS 7.8EG 7.82018-07-13
The Zizai Tech Nut mobile app stores the account password used to authenticate to the cloud API in cleartext in the cache.db file.
- CVE-2016-6551CRITICALCVSS 9.8EG 9.82018-07-13
Intellian Satellite TV antennas t-Series and v-Series, firmware version 1.07, uses non-random default credentials of: ftp/ftp or intellian:12345678. A remote network attacker can gain elevated access to a vulnerable device.
- CVE-2016-6552CRITICALCVSS 9.8EG 9.82018-07-13
Green Packet DX-350 uses non-random default credentials of: root:wimax. A remote network attacker can gain privileged access to a vulnerable device.
- CVE-2016-6553CRITICALCVSS 9.8EG 9.82018-07-13
Nuuo NT-4040 Titan, firmware NT-4040_01.07.0000.0015_1120, uses non-random default credentials of: admin:admin and localdisplay:111111. A remote network attacker can gain privileged access to a vulnerable device.
- CVE-2016-6554CRITICALCVSS 9.8EG 9.82018-07-13
Synology NAS servers DS107, firmware version 3.1-1639 and prior, and DS116, DS213, firmware versions prior to 5.2-5644-1, use non-random default credentials of: guest:(blank) and admin:(blank) . A remote network attacker can gain privilege…
- CVE-2016-6599CRITICALCVSS 9.8EG 9.82018-01-30
BMC Track-It! 11.4 before Hotfix 3 exposes an unauthenticated .NET remoting configuration service (ConfigurationService) on port 9010. This service contains a method that can be used to retrieve a configuration file that contains the appli…
- CVE-2016-6815MEDIUMCVSS 6.5EG 6.52017-10-13
In Apache Ranger before 0.6.2, users with "keyadmin" role should not be allowed to change password for users with "admin" role.
- CVE-2016-6904HIGHCVSS 8.1EG 8.12017-12-11
Versions of VASA Provider for Clustered Data ONTAP prior to 7.0P1 contain a web server that accepts plain text authentication. This could allow an unauthenticated attacker to obtain authentication credentials.
- CVE-2016-7030HIGHCVSS 7.5EG 7.52017-08-28
FreeIPA uses a default password policy that locks an account after 5 unsuccessful authentication attempts, which allows remote attackers to cause a denial of service by locking out the account in which system services run on.
- CVE-2016-7043MEDIUMCVSS 5.9EG 5.92019-05-15
It has been reported that KIE server and Busitess Central before version 7.21.0.Final contain username and password as plaintext Java properties. Any app deployed on the same server would have access to these properties, thus granting acce…
- CVE-2016-7062HIGHCVSS 7.8EG 7.82017-06-27
rhscon-ceph in Red Hat Storage Console 2 x86_64 and Red Hat Storage Console Node 2 x86_64 allows local users to obtain the password as cleartext.
- CVE-2016-7456CRITICALCVSS 9.8EG 9.82016-12-29
VMware vSphere Data Protection (VDP) 5.5.x though 6.1.x has an SSH private key with a publicly known password, which makes it easier for remote attackers to obtain login access via an SSH session.
- CVE-2016-8366HIGHCVSS 7.3EG 7.32018-04-05
Webvisit in Phoenix Contact ILC PLCs offers a password macro to protect HMI pages on the PLC against casual or coincidental opening of HMI pages by the user. The password macro can be configured in a way that the password is stored and tra…
- CVE-2016-8372HIGHCVSS 8.1EG 8.12017-02-13
An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and prior, ioLogik E1212, firmware Version V2.4 and prior, ioLogik E1213, firmware Version V2.5 and prior, ioLogik E1214, …
- CVE-2016-8375MEDIUMCVSS 4.9EG 4.92017-02-13
An issue was discovered in Becton, Dickinson and Company (BD) Alaris 8015 Point of Care (PC) unit, Version 9.5 and prior versions, and Version 9.7, and 8000 PC unit. An unauthorized user with physical access to an affected Alaris PC unit m…
- CVE-2016-8378CRITICALCVSS 9.8EG 9.82017-02-13
An issue was discovered in Lynxspring JENEsys BAS Bridge versions 1.1.8 and older. The application's database lacks sufficient safeguards for protecting credentials.
- CVE-2016-8566HIGHCVSS 7.8EG 7.82017-02-13
An issue was discovered in Siemens SICAM PAS before 8.00. Because of Storing Passwords in a Recoverable Format, an authenticated local attacker with certain privileges could possibly reconstruct the passwords of users for accessing the dat…
- CVE-2016-8616MEDIUMCVSS 3.7EG 5.92018-08-01
A flaw was found in curl before version 7.51.0 When re-using a connection, curl was doing case insensitive comparisons of user name and password with the existing connections. This means that if an unused connection with proper credentials…
- CVE-2016-8918MEDIUMCVSS 5.9EG 5.92017-02-01
IBM Integration Bus, under non default configurations, could allow a remote user to authenticate without providing valid credentials.
- CVE-2016-8962MEDIUMCVSS 5.9EG 5.92017-04-26
IBM BigFix Inventory 9.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 118851.
- CVE-2016-8967MEDIUMCVSS 5.5EG 5.52017-02-01
IBM BigFix Inventory v9 9.2 stores user credentials in plain in clear text which can be read by a local user.
- CVE-2016-9081CRITICALCVSS 9.8EG 9.82017-01-23
Joomla! 3.4.4 through 3.6.3 allows attackers to reset username, password, and user group assignments and possibly perform other user account modifications via unspecified vectors.
- CVE-2016-9100HIGHCVSS 7.8EG 7.82017-05-11
Symantec Advanced Secure Gateway (ASG) 6.6 prior to 6.6.5.13, ASG 6.7 prior to 6.7.3.1, ProxySG 6.5 prior to 6.5.10.6, ProxySG 6.6 prior to 6.6.5.13, and ProxySG 6.7 prior to 6.7.3.1 are susceptible to an information disclosure vulnerabili…
- CVE-2016-9204MEDIUMCVSS 6.5EG 6.52016-12-14
A vulnerability in the Cisco Intercloud Fabric (ICF) Director could allow an unauthenticated, remote attacker to connect to internal services with an internal account. Affected Products: Cisco Nexus 1000V InterCloud is affected. More Infor…
- CVE-2016-9348LOWCVSS 3.3EG 3.32017-02-13
An issue was discovered in Moxa NPort 5110 versions prior to 2.6, NPort 5130/5150 Series versions prior to 3.6, NPort 5200 Series versions prior to 2.8, NPort 5400 Series versions prior to 3.11, NPort 5600 Series versions prior to 3.7, NPo…
- CVE-2016-9355MEDIUMCVSS 5.3EG 5.32017-02-13
An issue was discovered in Becton, Dickinson and Company (BD) Alaris 8015 Point of Care (PC) unit, Version 9.5 and prior versions, and Version 9.7. An unauthorized user with physical access to an Alaris 8015 PC unit may be able to obtain u…
- CVE-2016-9479HIGHCVSS 7.5EG 7.52016-12-02
The "lost password" functionality in b2evolution before 6.7.9 allows remote attackers to reset arbitrary user passwords via a crafted request.
Map vulnerabilities like CWE-255 to your infrastructure
EchelonGraph correlates every CVE — across CWE-255 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →